EIP-2026-109598
PRE-CVEmoziloCMS 2.0 - Persistent Cross-Site Scripting (Authenticated)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-109598. PoCs published by Abdulkadir Kaya.
AI-analyzed exploit summary This exploit demonstrates a persistent XSS vulnerability in moziloCMS 2.0, where an authenticated attacker can inject malicious JavaScript into the 'Content Page' section, which executes when other users access the page. The provided payloads confirm the vulnerability by triggering alerts.
Description
moziloCMS 2.0 - Persistent Cross-Site Scripting (Authenticated)
Exploits (1)
This exploit demonstrates a persistent XSS vulnerability in moziloCMS 2.0, where an authenticated attacker can inject malicious JavaScript into the 'Content Page' section, which executes when other users access the page. The provided payloads confirm the vulnerability by triggering alerts.