EIP-2026-112201
PRE-CVESkaDate Lite 2.0 - Multiple Cross-Site Request Forgery / Persistent Cross-Site Scripting Vulnerabilities
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-112201. PoCs published by LiquidWorm.
AI-analyzed exploit summary This HTML file contains functional proof-of-concept exploit code for multiple XSRF and persistent XSS vulnerabilities in SkaDate Lite 2.0. It includes multiple forms that submit crafted POST requests to exploit unsanitized input parameters.
Description
SkaDate Lite 2.0 - Multiple Cross-Site Request Forgery / Persistent Cross-Site Scripting Vulnerabilities
Exploits (1)
exploitdb
WORKING POC
by LiquidWorm · htmlwebappsphp
https://www.exploit-db.com/exploits/34204
This HTML file contains functional proof-of-concept exploit code for multiple XSRF and persistent XSS vulnerabilities in SkaDate Lite 2.0. It includes multiple forms that submit crafted POST requests to exploit unsanitized input parameters.
Classification
Working Poc 100%
Attack Type
Xss
Complexity
Trivial
Reliability
Reliable
Target:
SkaDate Lite 2.0 (build 7651)
Auth required
Prerequisites:
Victim must be authenticated as an admin · Victim must visit the malicious HTML page
MITRE ATT&CK
devstral-2 · analyzed Feb 18, 2026
Full analysis →
Details
Status
pre_cve
Tracked Since
Feb 18, 2026