CVE-2007-6157
SimpleGallery 0.1.3 - Cross-Site Scripting via Album Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-6157. PoCs published by JosS.
AI-analyzed exploit summary The provided text describes a cross-site scripting (XSS) vulnerability in SimpleGallery 0.1.3, where user-supplied input via the 'album' parameter is not properly sanitized. This allows attackers to execute arbitrary HTML or script code in the context of an affected site.
Description
Cross-site scripting (XSS) vulnerability in index.php in SimpleGallery 0.1.3 allows remote attackers to inject arbitrary web script or HTML via the album parameter.
Exploits (1)
The provided text describes a cross-site scripting (XSS) vulnerability in SimpleGallery 0.1.3, where user-supplied input via the 'album' parameter is not properly sanitized. This allows attackers to execute arbitrary HTML or script code in the context of an affected site.