EIP-2026-110694
PRE-CVEPHP F1 Max's Photo Album - 'showimage.php' Cross-Site Scripting
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-110694. PoCs published by High-Tech Bridge SA.
AI-analyzed exploit summary The provided text describes a cross-site scripting (XSS) vulnerability in PHP F1 Max's Photo Album due to insufficient sanitization of user-supplied data. The vulnerability allows arbitrary script execution in the context of the affected site, potentially leading to credential theft or other attacks.
Description
PHP F1 Max's Photo Album - 'showimage.php' Cross-Site Scripting
Exploits (1)
The provided text describes a cross-site scripting (XSS) vulnerability in PHP F1 Max's Photo Album due to insufficient sanitization of user-supplied data. The vulnerability allows arbitrary script execution in the context of the affected site, potentially leading to credential theft or other attacks.