Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-5796. PoCs published by Adrian Pastor.
AI-analyzed exploit summary This exploit demonstrates two XSS vulnerabilities in Blue Coat ProxySG Management Console by injecting malicious JavaScript payloads into URL parameters. The payloads can steal credentials by prompting users for their username and password.
Description
Cross-site scripting (XSS) vulnerability in the management console in Blue Coat ProxySG before 4.2.6.1, and 5.x before 5.2.2.5, allows remote attackers to inject arbitrary web script or HTML by modifying the URL that is used for loading Certificate Revocation Lists.
Exploits (1)
This exploit demonstrates two XSS vulnerabilities in Blue Coat ProxySG Management Console by injecting malicious JavaScript payloads into URL parameters. The payloads can steal credentials by prompting users for their username and password.