EIP-2026-110171
PRE-CVEOnline Scheduling System 1.0 - Persistent Cross-Site Scripting
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-110171. PoCs published by boku.
AI-analyzed exploit summary This exploit demonstrates a persistent XSS vulnerability in Online Scheduling System 1.0, where unsanitized user input in the 'corname' parameter is stored in the database and executed when viewed by other users. The PoC includes a malicious POST request that injects a script tag into the database.
Description
Online Scheduling System 1.0 - Persistent Cross-Site Scripting
Exploits (1)
This exploit demonstrates a persistent XSS vulnerability in Online Scheduling System 1.0, where unsanitized user input in the 'corname' parameter is stored in the database and executed when viewed by other users. The PoC includes a malicious POST request that injects a script tag into the database.