EIP-2026-102368

PRE-CVE

Furukawa Electric ConsciusMAP 2.8.1 - Remote Code Execution

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-102368. PoCs published by LiquidWorm.

AI-analyzed exploit summary This exploit leverages Java deserialization in Furukawa Electric ConsciusMAP 2.8.1 via the 'javax.faces.ViewState' parameter to achieve remote code execution. It sends a crafted payload to trigger a reverse shell connection to an attacker-controlled host.

Description

Furukawa Electric ConsciusMAP 2.8.1 - Remote Code Execution

Exploits (1)

exploitdb WORKING POC
by LiquidWorm · textwebappsjava
https://www.exploit-db.com/exploits/48380

This exploit leverages Java deserialization in Furukawa Electric ConsciusMAP 2.8.1 via the 'javax.faces.ViewState' parameter to achieve remote code execution. It sends a crafted payload to trigger a reverse shell connection to an attacker-controlled host.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Furukawa Electric ConsciusMAP 2.8.1
No auth needed
Prerequisites: Network access to the target · Java deserialization vulnerability in the target application
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026