EIP-2026-109507
PRE-CVEMKPortal 1.x - Multiple BBCode HTML Injection Vulnerabilities
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-109507. PoCs published by Inj3ct0r.
AI-analyzed exploit summary The provided text describes an HTML injection vulnerability in MKPortal, where user-supplied data is not sufficiently sanitized, allowing attacker-supplied HTML or JavaScript code to execute in the context of the affected site. The example data demonstrates potential attack vectors using malformed URL and IMG tags.
Description
MKPortal 1.x - Multiple BBCode HTML Injection Vulnerabilities
Exploits (1)
The provided text describes an HTML injection vulnerability in MKPortal, where user-supplied data is not sufficiently sanitized, allowing attacker-supplied HTML or JavaScript code to execute in the context of the affected site. The example data demonstrates potential attack vectors using malformed URL and IMG tags.