EIP-2026-102522
PRE-CVEOpenfire 3.6.4 - Multiple Cross-Site Request Forgery Vulnerabilities
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-102522. PoCs published by Riyaz Ahemed Walikar.
AI-analyzed exploit summary The exploit demonstrates multiple CSRF vulnerabilities in Openfire 3.6.4's administrative section, allowing attackers to perform actions such as creating users, changing passwords, deleting users, and managing groups by tricking authenticated administrators into visiting malicious URLs.
Description
Openfire 3.6.4 - Multiple Cross-Site Request Forgery Vulnerabilities
Exploits (1)
The exploit demonstrates multiple CSRF vulnerabilities in Openfire 3.6.4's administrative section, allowing attackers to perform actions such as creating users, changing passwords, deleting users, and managing groups by tricking authenticated administrators into visiting malicious URLs.