CVE-2007-1291
Tyger Bug Tracking System 1.1.3 - Cross-Site Scripting via PATH_INFO to Login.php and Register.php
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2007-1291. PoCs published by CorryL.
AI-analyzed exploit summary The provided text describes multiple input-validation vulnerabilities in Tyger Bug Tracking System, including SQL injection and XSS issues. It includes a basic XSS proof-of-concept example but lacks executable exploit code.
Description
Multiple cross-site scripting (XSS) vulnerabilities in Tyger Bug Tracking System (TygerBT) 1.1.3 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) Login.php and (2) Register.php.
Exploits (2)
The provided text describes multiple input-validation vulnerabilities in Tyger Bug Tracking System, including SQL injection and XSS issues. It includes a basic XSS proof-of-concept example but lacks executable exploit code.
The provided text describes multiple input-validation vulnerabilities in Tyger Bug Tracking System, including SQL injection and XSS issues. It includes a basic XSS proof-of-concept example but lacks executable exploit code.