EIP-2026-100750
PRE-CVEBackupPC 3.x - 'index.cgi' Multiple Cross-Site Scripting Vulnerabilities
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-100750. PoCs published by High-Tech Bridge SA.
AI-analyzed exploit summary The exploit demonstrates a cross-site scripting (XSS) vulnerability in BackupPC by providing crafted URLs that inject arbitrary JavaScript code. The vulnerability arises from insufficient sanitization of user-supplied input in the 'host', 'num', 'share', and 'dir' parameters.
Description
BackupPC 3.x - 'index.cgi' Multiple Cross-Site Scripting Vulnerabilities
Exploits (1)
The exploit demonstrates a cross-site scripting (XSS) vulnerability in BackupPC by providing crafted URLs that inject arbitrary JavaScript code. The vulnerability arises from insufficient sanitization of user-supplied input in the 'host', 'num', 'share', and 'dir' parameters.