EIP-2026-111545
PRE-CVEProjeQtOr Project Management System v10.4.1 - Multiple XSS
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-111545. PoCs published by Mirabbas Ağalarov.
AI-analyzed exploit summary The exploit demonstrates three distinct XSS vulnerabilities in ProjeQtOr v10.4.1: reflected XSS via URL parameter injection, stored XSS via SVG file upload, and DOM-based XSS via POST request manipulation. Each PoC includes specific payloads and steps to trigger the vulnerabilities.
Description
ProjeQtOr Project Management System v10.4.1 - Multiple XSS
Exploits (1)
The exploit demonstrates three distinct XSS vulnerabilities in ProjeQtOr v10.4.1: reflected XSS via URL parameter injection, stored XSS via SVG file upload, and DOM-based XSS via POST request manipulation. Each PoC includes specific payloads and steps to trigger the vulnerabilities.