EIP-2026-101333
PRE-CVEIskratel SI2000 Callisto 821+ - Cross-Site Request Forgery / HTML Injection
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-101333. PoCs published by MustLive.
AI-analyzed exploit summary The exploit describes a cross-site request-forgery (CSRF) vulnerability and multiple HTML-injection vulnerabilities in the Iskratel SI2000 Callisto 821+ device. The provided URLs demonstrate HTML injection via script tags in the 'EmWeb_ns:vim' parameter, which can lead to arbitrary script execution in the context of the affected browser.
Description
Iskratel SI2000 Callisto 821+ - Cross-Site Request Forgery / HTML Injection
Exploits (1)
The exploit describes a cross-site request-forgery (CSRF) vulnerability and multiple HTML-injection vulnerabilities in the Iskratel SI2000 Callisto 821+ device. The provided URLs demonstrate HTML injection via script tags in the 'EmWeb_ns:vim' parameter, which can lead to arbitrary script execution in the context of the affected browser.