EIP-2026-102403
PRE-CVEManageEngine Desktop Central 10.0.271 - Cross-Site Scripting
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-102403. PoCs published by Ismail Tasdelen.
AI-analyzed exploit summary This exploit demonstrates a reflected XSS vulnerability in ManageEngine Desktop Central 10.0.271 via the 'Features & Articles' search field. The crafted HTTP POST request injects malicious JavaScript into the 'q' parameter, triggering an alert popup when processed by the server.
Description
ManageEngine Desktop Central 10.0.271 - Cross-Site Scripting
Exploits (1)
This exploit demonstrates a reflected XSS vulnerability in ManageEngine Desktop Central 10.0.271 via the 'Features & Articles' search field. The crafted HTTP POST request injects malicious JavaScript into the 'q' parameter, triggering an alert popup when processed by the server.