EIP-2026-101616
PRE-CVED-LINK Central WifiManager CWM-100 - Server-Side Request Forgery
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-101616. PoCs published by hyp3rlinx.
AI-analyzed exploit summary This exploit demonstrates a Server-Side Request Forgery (SSRF) vulnerability in D-Link Central WifiManager CWM-100. It leverages the MailConnect feature to initiate outbound TCP connections to arbitrary ports on any IP address, allowing port scanning and potential internal network reconnaissance.
Description
D-LINK Central WifiManager CWM-100 - Server-Side Request Forgery
Exploits (1)
This exploit demonstrates a Server-Side Request Forgery (SSRF) vulnerability in D-Link Central WifiManager CWM-100. It leverages the MailConnect feature to initiate outbound TCP connections to arbitrary ports on any IP address, allowing port scanning and potential internal network reconnaissance.