EIP-2026-107920
PRE-CVEInvision Power Board (IP.Board) 4.2.1 - 'searchText' Cross-Site Scripting
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-107920. PoCs published by sonyy.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in Invision Power Board by injecting malicious JavaScript via the 'searchText' parameter. The payload bypasses input sanitization to execute arbitrary script code in the context of the affected site.
Description
Invision Power Board (IP.Board) 4.2.1 - 'searchText' Cross-Site Scripting
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in Invision Power Board by injecting malicious JavaScript via the 'searchText' parameter. The payload bypasses input sanitization to execute arbitrary script code in the context of the affected site.