EIP-2026-106916
PRE-CVEeSyndiCat Directory Software 2.2/2.3 - 'preview' Cross-Site Scripting
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-106916. PoCs published by Avram Marius.
AI-analyzed exploit summary The exploit demonstrates a reflected XSS vulnerability in eSyndiCat Directory Software by injecting malicious script tags via the 'preview' parameter. The PoC includes a simple alert-based payload and a meta-refresh redirect, confirming the lack of input sanitization.
Description
eSyndiCat Directory Software 2.2/2.3 - 'preview' Cross-Site Scripting
Exploits (1)
The exploit demonstrates a reflected XSS vulnerability in eSyndiCat Directory Software by injecting malicious script tags via the 'preview' parameter. The PoC includes a simple alert-based payload and a meta-refresh redirect, confirming the lack of input sanitization.