EIP-2026-104155
PRE-CVEAirDroid iOS / Android / Win 3.1.3 - Persistent
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-104155. PoCs published by Vulnerability-Lab.
AI-analyzed exploit summary The advisory details a persistent XSS vulnerability in AirDroid's message attachment functionality, where malicious filenames can execute arbitrary JavaScript in the victim's inbox. The PoC demonstrates the injection of a script tag via the filename parameter in a POST request.
Description
AirDroid iOS / Android / Win 3.1.3 - Persistent
Exploits (1)
The advisory details a persistent XSS vulnerability in AirDroid's message attachment functionality, where malicious filenames can execute arbitrary JavaScript in the victim's inbox. The PoC demonstrates the injection of a script tag via the filename parameter in a POST request.