EIP-2026-114427
PRE-CVEXforum 1.4 - 'nbpageliste' Cross-Site Scripting
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-114427. PoCs published by ViRuSMaN.
AI-analyzed exploit summary The exploit demonstrates a reflected XSS vulnerability in Xforum 1.4 by injecting a malicious script via the 'nbpageliste' parameter. The payload executes arbitrary JavaScript in the context of the affected site, potentially leading to session hijacking or other client-side attacks.
Description
Xforum 1.4 - 'nbpageliste' Cross-Site Scripting
Exploits (1)
The exploit demonstrates a reflected XSS vulnerability in Xforum 1.4 by injecting a malicious script via the 'nbpageliste' parameter. The payload executes arbitrary JavaScript in the context of the affected site, potentially leading to session hijacking or other client-side attacks.