EIP-2026-104853
PRE-CVE4PSA VoIPNow Professional 2.5.3 - Multiple Vulnerabilities
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-104853. PoCs published by Aboud-el.
AI-analyzed exploit summary This exploit demonstrates a reflected XSS vulnerability and a CSRF vulnerability in 4PSA VoipNow Professional 2.5.3. The XSS is triggered via a crafted URL, while the CSRF allows an attacker to add a reseller by tricking an authenticated user into submitting a malicious form.
Description
4PSA VoIPNow Professional 2.5.3 - Multiple Vulnerabilities
Exploits (1)
This exploit demonstrates a reflected XSS vulnerability and a CSRF vulnerability in 4PSA VoipNow Professional 2.5.3. The XSS is triggered via a crafted URL, while the CSRF allows an attacker to add a reseller by tricking an authenticated user into submitting a malicious form.