EIP-2026-100736
PRE-CVEAlkalay.Net (Multiple Scripts) - Remote Command Execution
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-100736. PoCs published by sullo@cirt.net.
AI-analyzed exploit summary The exploit demonstrates arbitrary command execution in multiple Alkalay.net CGI scripts due to improper input sanitization. Attackers can inject commands via the pipe character or semicolon in URL parameters, leading to remote code execution in the context of the web server.
Description
Alkalay.Net (Multiple Scripts) - Remote Command Execution
Exploits (1)
The exploit demonstrates arbitrary command execution in multiple Alkalay.net CGI scripts due to improper input sanitization. Attackers can inject commands via the pipe character or semicolon in URL parameters, leading to remote code execution in the context of the web server.