EIP-2026-101936
PRE-CVEQNAP Turbo NAS TS-1279U-RP - Multiple Path Injections
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-101936. PoCs published by Andrea Fabrizi.
AI-analyzed exploit summary This is a technical writeup detailing a path injection vulnerability in QNAP Turbo NAS devices. It describes how authenticated users can exploit the '/cgi-bin/filemanager/utilRequest.cgi' endpoint to access, delete, or modify system files, including sensitive files like '/etc/shadow'.
Description
QNAP Turbo NAS TS-1279U-RP - Multiple Path Injections
Exploits (1)
This is a technical writeup detailing a path injection vulnerability in QNAP Turbo NAS devices. It describes how authenticated users can exploit the '/cgi-bin/filemanager/utilRequest.cgi' endpoint to access, delete, or modify system files, including sensitive files like '/etc/shadow'.