EIP-2026-111607
PRE-CVEPyrox Search 1.0.5 - 'Newsearch.php' Whatdoreplace Cross-Site Scripting
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-111607. PoCs published by rgod.
AI-analyzed exploit summary The provided text describes a cross-site scripting (XSS) vulnerability in Pyrox Search, where user-supplied URI input is not properly sanitized, allowing arbitrary script execution in a user's browser. The example demonstrates a proof-of-concept payload that triggers an alert with the user's cookies.
Description
Pyrox Search 1.0.5 - 'Newsearch.php' Whatdoreplace Cross-Site Scripting
Exploits (1)
The provided text describes a cross-site scripting (XSS) vulnerability in Pyrox Search, where user-supplied URI input is not properly sanitized, allowing arbitrary script execution in a user's browser. The example demonstrates a proof-of-concept payload that triggers an alert with the user's cookies.