EIP-2026-103938
PRE-CVEIBM Lotus Sametime - stconf.nsf Cross-Site Scripting
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-103938. PoCs published by Dave Daly.
AI-analyzed exploit summary The provided code demonstrates a cross-site scripting (XSS) vulnerability in IBM Lotus Sametime Server by injecting malicious JavaScript into a URL parameter. The exploit leverages insufficient input sanitization to execute arbitrary script code in the context of the affected site.
Description
IBM Lotus Sametime - stconf.nsf Cross-Site Scripting
Exploits (1)
The provided code demonstrates a cross-site scripting (XSS) vulnerability in IBM Lotus Sametime Server by injecting malicious JavaScript into a URL parameter. The exploit leverages insufficient input sanitization to execute arbitrary script code in the context of the affected site.