EIP-2026-113011
PRE-CVEvBulletin 5.6.3 - 'group' Cross Site Scripting
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-113011. PoCs published by Vincent666.
AI-analyzed exploit summary This exploit demonstrates a Cross-Site Scripting (XSS) vulnerability in vBulletin 5.6.3 by injecting malicious JavaScript into the 'group' parameter of the template.php file in the Admin Control Panel. The PoC provides a step-by-step guide to trigger the XSS payload, which executes arbitrary JavaScript code in the context of the victim's browser session.
Description
vBulletin 5.6.3 - 'group' Cross Site Scripting
Exploits (1)
This exploit demonstrates a Cross-Site Scripting (XSS) vulnerability in vBulletin 5.6.3 by injecting malicious JavaScript into the 'group' parameter of the template.php file in the Admin Control Panel. The PoC provides a step-by-step guide to trigger the XSS payload, which executes arbitrary JavaScript code in the context of the victim's browser session.