EIP-2026-102117

PRE-CVE

Wifi Photo Transfer 2.1/1.1 PRO - Multiple Vulnerabilities

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-102117. PoCs published by Vulnerability-Lab.

AI-analyzed exploit summary The document describes multiple vulnerabilities in Wifi Photo Transfer 2.1 & 1.1 Pro, including command injection via album names, file inclusion/arbitrary upload via POST requests, information disclosure via misconfigured file access, and client-side XSS via manipulated filenames. No actual exploit code is provided, only detailed descriptions and manual reproduction steps.

Description

Wifi Photo Transfer 2.1/1.1 PRO - Multiple Vulnerabilities

Exploits (1)

exploitdb WRITEUP
by Vulnerability-Lab · textwebappshardware
https://www.exploit-db.com/exploits/25413

The document describes multiple vulnerabilities in Wifi Photo Transfer 2.1 & 1.1 Pro, including command injection via album names, file inclusion/arbitrary upload via POST requests, information disclosure via misconfigured file access, and client-side XSS via manipulated filenames. No actual exploit code is provided, only detailed descriptions and manual reproduction steps.

Classification
Writeup 90%
Attack Type
Rce | Info Leak | Xss | Other
Complexity
Moderate
Reliability
Theoretical
Target: Wifi Photo Transfer 2.1 & 1.1 Pro
No auth needed
Prerequisites: Network access to the vulnerable application · Ability to modify album names or send crafted POST requests
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026