This exploit demonstrates an HTML injection vulnerability in SMW+ 1.5.6, where user-supplied input is not properly sanitized. The provided URL injects JavaScript code to execute an alert box, proving the vulnerability.
Classification
Working Poc 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Reliable
Target:SMW+ 1.5.6
No auth needed
Prerequisites:Access to the target application's web interface