EIP-2026-100018
PRE-CVEPlesk 10.4.4/11.0.9 - SSO XML External Entity / Cross-Site Scripting Injection
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-100018. PoCs published by BLacK ZeRo.
AI-analyzed exploit summary This PHP script exploits an XXE (XML External Entity) injection vulnerability in Plesk SSO (Single Sign-On) to read arbitrary files or execute commands via the 'expect://' wrapper. It crafts a malicious SAML request with an embedded XXE payload and sends it to the target Plesk instance.
Description
Plesk 10.4.4/11.0.9 - SSO XML External Entity / Cross-Site Scripting Injection
Exploits (1)
This PHP script exploits an XXE (XML External Entity) injection vulnerability in Plesk SSO (Single Sign-On) to read arbitrary files or execute commands via the 'expect://' wrapper. It crafts a malicious SAML request with an embedded XXE payload and sends it to the target Plesk instance.