EIP-2026-104279
PRE-CVEiboss Secure Web Gateway - Stored Cross-Site Scripting (XSS)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-104279. PoCs published by modrnProph3t.
AI-analyzed exploit summary This is a technical writeup detailing a stored XSS vulnerability in iboss Secure Web Gateway. The vulnerability allows an attacker to inject malicious JavaScript into the 'redirectUrl' parameter of a login request, which is then stored and executed when the login page is accessed.
Description
iboss Secure Web Gateway - Stored Cross-Site Scripting (XSS)
Exploits (1)
This is a technical writeup detailing a stored XSS vulnerability in iboss Secure Web Gateway. The vulnerability allows an attacker to inject malicious JavaScript into the 'redirectUrl' parameter of a login request, which is then stored and executed when the login page is accessed.