EIP-2026-104434
PRE-CVESISQUALWFM 7.1.319.103 - Host Header Injection
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-104434. PoCs published by Omer Shaik.
AI-analyzed exploit summary This PoC demonstrates a Host Header Injection vulnerability in SISQUALWFM 7.1.319.103, where manipulating the Host header in requests to /sisqualIdentityServer/core/login redirects users to an attacker-controlled domain. The exploit shows the original and modified requests, proving the vulnerability's existence.
Description
SISQUALWFM 7.1.319.103 - Host Header Injection
Exploits (1)
This PoC demonstrates a Host Header Injection vulnerability in SISQUALWFM 7.1.319.103, where manipulating the Host header in requests to /sisqualIdentityServer/core/login redirects users to an attacker-controlled domain. The exploit shows the original and modified requests, proving the vulnerability's existence.