EIP-2026-100637
PRE-CVEZiggurat Farsi CMS - 'id' Cross-Site Scripting
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-100637. PoCs published by Pouya Daneshmand.
AI-analyzed exploit summary The exploit demonstrates a cross-site scripting (XSS) vulnerability in Ziggurat Farsi CMS by injecting a malicious script tag into the 'id' parameter of the 'index.asp' page. The lack of input sanitization allows arbitrary JavaScript execution in the context of the affected site.
Description
Ziggurat Farsi CMS - 'id' Cross-Site Scripting
Exploits (1)
The exploit demonstrates a cross-site scripting (XSS) vulnerability in Ziggurat Farsi CMS by injecting a malicious script tag into the 'id' parameter of the 'index.asp' page. The lack of input sanitization allows arbitrary JavaScript execution in the context of the affected site.