EIP-2026-101700
PRE-CVEElber ESE DVB-S/S2 Satellite Receiver 1.5.x - Authentication Bypass
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-101700. PoCs published by LiquidWorm.
AI-analyzed exploit summary The exploit demonstrates an authentication bypass vulnerability in Elber ESE DVB-S/S2 Satellite Receiver by directly manipulating the `set_pwd` endpoint to overwrite user passwords without authentication. The provided cURL command allows an attacker to set a new password for any user level, granting unauthorized administrative access.
Description
Elber ESE DVB-S/S2 Satellite Receiver 1.5.x - Authentication Bypass
Exploits (1)
The exploit demonstrates an authentication bypass vulnerability in Elber ESE DVB-S/S2 Satellite Receiver by directly manipulating the `set_pwd` endpoint to overwrite user passwords without authentication. The provided cURL command allows an attacker to set a new password for any user level, granting unauthorized administrative access.