Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-112999. PoCs published by 5ubzer0.
AI-analyzed exploit summary The exploit demonstrates a cross-site scripting (XSS) vulnerability in vBulletin 4.0.2 by injecting malicious script tags into the 'query' parameter of the search.php endpoint. The payload executes arbitrary JavaScript in the context of the affected site, potentially stealing cookies or performing other malicious actions.
Description
vBulletin 4.0.2 - Search Cross-Site Scripting
Exploits (1)
The exploit demonstrates a cross-site scripting (XSS) vulnerability in vBulletin 4.0.2 by injecting malicious script tags into the 'query' parameter of the search.php endpoint. The payload executes arbitrary JavaScript in the context of the affected site, potentially stealing cookies or performing other malicious actions.