Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-5993. PoCs published by Jesus Olmos Gonzalez.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in Web Gateway by injecting malicious script code via the 'searchtype' parameter in a URL. The vulnerability arises due to insufficient input sanitization, allowing arbitrary script execution in the context of the affected site.
Description
Cross-site scripting (XSS) vulnerability in Visionary Technology in Library Solutions (VTLS) vtls.web.gateway before 48.1.1 allows remote attackers to inject arbitrary web script or HTML via the searchtype parameter.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in Web Gateway by injecting malicious script code via the 'searchtype' parameter in a URL. The vulnerability arises due to insufficient input sanitization, allowing arbitrary script execution in the context of the affected site.