CVE-2008-6200
Swiki 1.5 - Cross-Site Scripting via Query String and New Wiki Entry
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-6200. PoCs published by Brad Antoniewicz.
AI-analyzed exploit summary The provided text describes an XSS vulnerability in Swiki 1.5, where user-supplied input is not properly sanitized, allowing arbitrary script execution in a user's browser context. The example demonstrates a basic XSS payload via a URL path.
Description
Multiple cross-site scripting (XSS) vulnerabilities in Swiki 1.5 allow remote attackers to inject arbitrary web script or HTML via (1) the query string and (2) a new wiki entry.
Exploits (1)
The provided text describes an XSS vulnerability in Swiki 1.5, where user-supplied input is not properly sanitized, allowing arbitrary script execution in a user's browser context. The example demonstrates a basic XSS payload via a URL path.