EIP-2026-102004
PRE-CVESitecom Home Storage Center - Authentication Bypass
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-102004. PoCs published by Mattijs van Ommeren.
AI-analyzed exploit summary The exploit demonstrates an authorization bypass vulnerability in Sitecom Home Storage Center devices, allowing an unauthenticated attacker to change the administrator password via a crafted HTTP request. The PoC uses a simple curl command to exploit the flawed cookie validation mechanism.
Description
Sitecom Home Storage Center - Authentication Bypass
Exploits (1)
The exploit demonstrates an authorization bypass vulnerability in Sitecom Home Storage Center devices, allowing an unauthenticated attacker to change the administrator password via a crafted HTTP request. The PoC uses a simple curl command to exploit the flawed cookie validation mechanism.