CVE-2007-6001
Bandersnatch 0.4 - Cross-Site Scripting via func, date, or jid Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-6001. PoCs published by Tim Brown.
AI-analyzed exploit summary The provided text describes multiple XSS vulnerabilities in Bandersnatch 0.4 due to improper input sanitization. It lists injection points in URL parameters but does not include executable exploit code.
Description
Multiple cross-site scripting (XSS) vulnerabilities in index.php in Bandersnatch 0.4 allow remote attackers to inject arbitrary web script or HTML via the (1) func or (2) date parameter, or the jid parameter in a (3) log or (4) user action, a different vulnerability than CVE-2007-3910.
Exploits (1)
The provided text describes multiple XSS vulnerabilities in Bandersnatch 0.4 due to improper input sanitization. It lists injection points in URL parameters but does not include executable exploit code.