EIP-2026-101514
PRE-CVEAerohive HiveOS 5.1r5 < 6.1r5 - Remote Code Execution
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-101514. PoCs published by Ike-Clinton.
AI-analyzed exploit summary This exploit leverages a local file inclusion (LFI) vulnerability in AeroHive AP340 HiveOS < 6.1r5 by injecting PHP code into the login page, which poisons the log file at /var/log/messages. It then uses the LFI to execute arbitrary commands, specifically changing the root password for SSH access.
Description
Aerohive HiveOS 5.1r5 < 6.1r5 - Remote Code Execution
Exploits (1)
This exploit leverages a local file inclusion (LFI) vulnerability in AeroHive AP340 HiveOS < 6.1r5 by injecting PHP code into the login page, which poisons the log file at /var/log/messages. It then uses the LFI to execute arbitrary commands, specifically changing the root password for SSH access.