EIP-2026-112201

PRE-CVE

SkaDate Lite 2.0 - Multiple Cross-Site Request Forgery / Persistent Cross-Site Scripting Vulnerabilities

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-112201. PoCs published by LiquidWorm.

AI-analyzed exploit summary This HTML file contains functional proof-of-concept exploit code for multiple XSRF and persistent XSS vulnerabilities in SkaDate Lite 2.0. It includes multiple forms that submit crafted POST requests to exploit unsanitized input parameters.

Description

SkaDate Lite 2.0 - Multiple Cross-Site Request Forgery / Persistent Cross-Site Scripting Vulnerabilities

Exploits (1)

exploitdb WORKING POC
by LiquidWorm · htmlwebappsphp
https://www.exploit-db.com/exploits/34204

This HTML file contains functional proof-of-concept exploit code for multiple XSRF and persistent XSS vulnerabilities in SkaDate Lite 2.0. It includes multiple forms that submit crafted POST requests to exploit unsanitized input parameters.

Classification
Working Poc 100%
Attack Type
Xss
Complexity
Trivial
Reliability
Reliable
Target: SkaDate Lite 2.0 (build 7651)
Auth required
Prerequisites: Victim must be authenticated as an admin · Victim must visit the malicious HTML page
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026