EIP-2026-100072
PRE-CVEVirtual Postage (VPA) - Man In The Middle Remote Code Execution
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-100072. PoCs published by intern0t.
AI-analyzed exploit summary This exploit demonstrates a Remote Code Execution (RCE) vulnerability in the Virtual Postage (VPA) Android application via Man-In-The-Middle (MITM) attacks. The vulnerability is due to the use of addJavascriptInterface() in older API versions, allowing arbitrary Java code execution through attacker-controlled JavaScript.
Description
Virtual Postage (VPA) - Man In The Middle Remote Code Execution
Exploits (1)
This exploit demonstrates a Remote Code Execution (RCE) vulnerability in the Virtual Postage (VPA) Android application via Man-In-The-Middle (MITM) attacks. The vulnerability is due to the use of addJavascriptInterface() in older API versions, allowing arbitrary Java code execution through attacker-controlled JavaScript.