EIP-2026-100432
PRE-CVEMicrosoft Lync Server 2010 - 'ReachJoin.aspx' Remote Command Injection
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-100432. PoCs published by Mark Lachniet.
AI-analyzed exploit summary The exploit demonstrates a command injection vulnerability in Microsoft Lync Server 2010 by crafting a malicious URL that injects JavaScript code. The payload triggers an alert dialog, confirming the vulnerability's presence and potential for arbitrary command execution.
Description
Microsoft Lync Server 2010 - 'ReachJoin.aspx' Remote Command Injection
Exploits (1)
The exploit demonstrates a command injection vulnerability in Microsoft Lync Server 2010 by crafting a malicious URL that injects JavaScript code. The payload triggers an alert dialog, confirming the vulnerability's presence and potential for arbitrary command execution.