EIP-2026-106490
PRE-CVEDoceboLms 4.0.4 - 'index.php' Multiple HTML Injection Vulnerabilities
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-106490. PoCs published by LiquidWorm.
AI-analyzed exploit summary This HTML file demonstrates multiple stored and reflected XSS vulnerabilities in DoceboLMS 4.0.4 by injecting malicious scripts into form inputs and URI parameters. The PoC includes exploit vectors for the PreAssessment and News modules, as well as URI-based XSS attacks.
Description
DoceboLms 4.0.4 - 'index.php' Multiple HTML Injection Vulnerabilities
Exploits (1)
This HTML file demonstrates multiple stored and reflected XSS vulnerabilities in DoceboLMS 4.0.4 by injecting malicious scripts into form inputs and URI parameters. The PoC includes exploit vectors for the PreAssessment and News modules, as well as URI-based XSS attacks.