EIP-2026-105839

PRE-CVE

Chucky A. Ivey N.T. 1.1 - 'index.php' Multiple HTML Injection Vulnerabilities

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-105839. PoCs published by Aliaksandr Hartsuyeu.

AI-analyzed exploit summary The provided text describes an HTML injection vulnerability in an unspecified application (referred to as 'N.T.'). It outlines how user-supplied input is not properly sanitized, leading to potential XSS attacks. The example demonstrates how malicious input can be injected into the 'Ticker width' parameter.

Description

Chucky A. Ivey N.T. 1.1 - 'index.php' Multiple HTML Injection Vulnerabilities

Exploits (1)

exploitdb WRITEUP VERIFIED
by Aliaksandr Hartsuyeu · textwebappsphp
https://www.exploit-db.com/exploits/27570

The provided text describes an HTML injection vulnerability in an unspecified application (referred to as 'N.T.'). It outlines how user-supplied input is not properly sanitized, leading to potential XSS attacks. The example demonstrates how malicious input can be injected into the 'Ticker width' parameter.

Classification
Writeup 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Reliable
Target: N.T. (unspecified version)
Auth required
Prerequisites: Access to the vulnerable application · Valid credentials for authentication
MITRE ATT&CK
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026