CVE-2007-3049
Buttercup web file manager May 2007 - Cross-Site Scripting via Title Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-3049. PoCs published by John Martinelli.
AI-analyzed exploit summary This is a writeup describing a cross-site scripting (XSS) vulnerability in Buttercup WFM. The vulnerability allows arbitrary script execution in the context of the affected site due to improper input sanitization.
Description
Cross-site scripting (XSS) vulnerability in index.php in Buttercup web file manager (BWFM) May 2007 allows remote attackers to inject arbitrary web script or HTML via the title parameter.
Exploits (1)
This is a writeup describing a cross-site scripting (XSS) vulnerability in Buttercup WFM. The vulnerability allows arbitrary script execution in the context of the affected site due to improper input sanitization.