EIP-2026-112160
PRE-CVESimplog 0.9.3 - 'archive.php?PID' Cross-Site Scripting
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-112160. PoCs published by Benjamin Moss.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in Simplog 0.9.3 by injecting a malicious script via the 'pid' parameter in the archive.php page. The script executes arbitrary JavaScript in the context of the affected site, potentially stealing cookies.
Description
Simplog 0.9.3 - 'archive.php?PID' Cross-Site Scripting
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in Simplog 0.9.3 by injecting a malicious script via the 'pid' parameter in the archive.php page. The script executes arbitrary JavaScript in the context of the affected site, potentially stealing cookies.