EIP-2026-116376
PRE-CVESyslog Watcher Pro 2.8.0.812 - 'Date' Cross-Site Scripting
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-116376. PoCs published by demonalex.
AI-analyzed exploit summary The exploit demonstrates a stored XSS vulnerability in Syslog Watcher Pro v2.8.0.812 by injecting malicious JavaScript into the 'Date' parameter of a syslog packet. The PoC sends UDP packets with XSS payloads, which are stored in the database and executed when a victim generates and views a report.
Description
Syslog Watcher Pro 2.8.0.812 - 'Date' Cross-Site Scripting
Exploits (1)
The exploit demonstrates a stored XSS vulnerability in Syslog Watcher Pro v2.8.0.812 by injecting malicious JavaScript into the 'Date' parameter of a syslog packet. The PoC sends UDP packets with XSS payloads, which are stored in the database and executed when a victim generates and views a report.