EIP-2026-104130
PRE-CVEWebWasher Classic 2.2/3.3 - Error Message Cross-Site Scripting
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-104130. PoCs published by Oliver Karow.
AI-analyzed exploit summary The document describes a cross-site scripting (XSS) vulnerability in WebWasher Classic, where user-supplied data in error messages is not properly sanitized, allowing remote attackers to execute arbitrary script code in a user's browser. The vulnerability affects versions 3.3 Build 44 and 2.2.1, with potential impact on other versions.
Description
WebWasher Classic 2.2/3.3 - Error Message Cross-Site Scripting
Exploits (1)
The document describes a cross-site scripting (XSS) vulnerability in WebWasher Classic, where user-supplied data in error messages is not properly sanitized, allowing remote attackers to execute arbitrary script code in a user's browser. The vulnerability affects versions 3.3 Build 44 and 2.2.1, with potential impact on other versions.