EIP-2026-105185
PRE-CVEAnnuaire 1Two 1.0/1.1 - 'index.php' Cross-Site Scripting
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-105185. PoCs published by An0nym0uS.
AI-analyzed exploit summary The exploit demonstrates a cross-site scripting (XSS) vulnerability in Annuaire 1Two by injecting a malicious script via the 'id' parameter in the URL. The payload executes arbitrary JavaScript in the context of the affected site, potentially stealing cookies or performing other client-side attacks.
Description
Annuaire 1Two 1.0/1.1 - 'index.php' Cross-Site Scripting
Exploits (1)
The exploit demonstrates a cross-site scripting (XSS) vulnerability in Annuaire 1Two by injecting a malicious script via the 'id' parameter in the URL. The payload executes arbitrary JavaScript in the context of the affected site, potentially stealing cookies or performing other client-side attacks.