EIP-2026-102018
PRE-CVESonicWALL SonicOS 5.8.1.8 WAF - Cross-Site Scripting
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-102018. PoCs published by Vulnerability-Lab.
AI-analyzed exploit summary This is a detailed technical writeup describing a persistent POST injection vulnerability in SonicWall SonicOS 5.8.1.8. The vulnerability allows attackers to inject malicious script code via the `searchStr` parameter in the `appFirewallObjects` module, leading to persistent XSS.
Description
SonicWALL SonicOS 5.8.1.8 WAF - Cross-Site Scripting
Exploits (1)
This is a detailed technical writeup describing a persistent POST injection vulnerability in SonicWall SonicOS 5.8.1.8. The vulnerability allows attackers to inject malicious script code via the `searchStr` parameter in the `appFirewallObjects` module, leading to persistent XSS.