Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-100237. PoCs published by Abysssec.
AI-analyzed exploit summary This exploit leverages a SQL injection vulnerability in Dana Portal's ASP version to extract admin credentials (username, password hash, salt, and user code) and then updates the admin password to a known value ('hacked'). It requires external ASP files to generate the new password hash.
Description
Dana Portal - Remote Change Admin Password
Exploits (1)
This exploit leverages a SQL injection vulnerability in Dana Portal's ASP version to extract admin credentials (username, password hash, salt, and user code) and then updates the admin password to a known value ('hacked'). It requires external ASP files to generate the new password hash.