Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-111110. PoCs published by JeiAr.
AI-analyzed exploit summary This exploit demonstrates an HTML injection vulnerability in phpLinks, allowing an attacker to inject malicious HTML/script code via form fields (e.g., Site Title or Site URL). The PoC includes a script that, when executed by an admin reviewing the submission, can delete database entries or add malicious users.
Description
PHPLinks 2.1.2 - Add Site HTML Injection
Exploits (1)
This exploit demonstrates an HTML injection vulnerability in phpLinks, allowing an attacker to inject malicious HTML/script code via form fields (e.g., Site Title or Site URL). The PoC includes a script that, when executed by an admin reviewing the submission, can delete database entries or add malicious users.