CVE-2007-6700

OpenBSD 4.1 - Cross-Site Scripting via BGPD Web Interface cmd Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2007-6700. PoCs published by Anton Karpov.

AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in OpenBSD's bgplg CGI application by injecting a malicious script into the 'cmd' parameter. The vulnerability arises due to insufficient input sanitization, allowing arbitrary JavaScript execution in the context of the affected site.

Description

Cross-site scripting (XSS) vulnerability in cgi-bin/bgplg in the web interface for the BGPD daemon in OpenBSD 4.1 allows remote attackers to inject arbitrary web script or HTML via the cmd parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Anton Karpov · textwebappscgi
https://www.exploit-db.com/exploits/31081

This exploit demonstrates a cross-site scripting (XSS) vulnerability in OpenBSD's bgplg CGI application by injecting a malicious script into the 'cmd' parameter. The vulnerability arises due to insufficient input sanitization, allowing arbitrary JavaScript execution in the context of the affected site.

Classification
Working Poc 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Reliable
Target: OpenBSD bgplg (shipped with OpenBSD 4.1)
No auth needed
Prerequisites: Access to the vulnerable CGI endpoint
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (7)

Core 7
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1019288
Exploit mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/487369/100/0/threaded
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/487350/100/0/threaded
Patch third-party-advisory x_refsource_secunia
http://secunia.com/advisories/28726
Mailing List mailing-list x_refsource_mlist
http://www.mail-archive.com/misc%40openbsd.org/msg49057.html
Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/27535

Scores

EPSS 0.0456
EPSS Percentile 89.3%

Details

CWE
CWE-79
Status published
Products (1)
openbsd/openbsd 4.1
Published Feb 05, 2008
Tracked Since Feb 18, 2026