Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-100151. PoCs published by Ra3cH.
AI-analyzed exploit summary This exploit demonstrates a remote file upload vulnerability in Asset Manager, allowing an attacker to upload a malicious file (e.g., dz4all.asp;.jpg) via the assetmanager.asp endpoint. The vulnerability is exploited by bypassing file extension restrictions, leading to potential remote code execution (RCE).
Description
Asset Manager - Arbitrary File Upload
Exploits (1)
This exploit demonstrates a remote file upload vulnerability in Asset Manager, allowing an attacker to upload a malicious file (e.g., dz4all.asp;.jpg) via the assetmanager.asp endpoint. The vulnerability is exploited by bypassing file extension restrictions, leading to potential remote code execution (RCE).