EIP-2026-109780
PRE-CVEmyPHPNuke 1.8.8 - 'Default_Theme' Cross-Site Scripting
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-109780. PoCs published by Mindwarper.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in myPHPNuke due to inadequate HTML filtering. The PoC provides malicious URLs that execute arbitrary JavaScript in the context of the victim's browser, potentially stealing cookie-based authentication credentials.
Description
myPHPNuke 1.8.8 - 'Default_Theme' Cross-Site Scripting
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in myPHPNuke due to inadequate HTML filtering. The PoC provides malicious URLs that execute arbitrary JavaScript in the context of the victim's browser, potentially stealing cookie-based authentication credentials.