EIP-2026-102963
PRE-CVEpython-wrapper - Untrusted Search Path/Code Execution
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-102963. PoCs published by ShadowHatesYou.
AI-analyzed exploit summary This exploit leverages a Python-wrapper vulnerability where a malicious `test.py` script in the current directory is executed when `help('modules')` is called. It demonstrates privilege escalation by modifying `/root/.ssh/authorized_keys` and setting the SETUID bit on `/usr/bin/nmap`.
Description
python-wrapper - Untrusted Search Path/Code Execution
Exploits (1)
This exploit leverages a Python-wrapper vulnerability where a malicious `test.py` script in the current directory is executed when `help('modules')` is called. It demonstrates privilege escalation by modifying `/root/.ssh/authorized_keys` and setting the SETUID bit on `/usr/bin/nmap`.