EIP-2026-103234
PRE-CVEUCOPIA Wireless Appliance < 5.1 (Captive Portal) - Root Remote Code Execution
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-103234. PoCs published by agix.
AI-analyzed exploit summary This exploit demonstrates an unauthenticated remote code execution vulnerability in Ucopia captive portal <= 5.1. It leverages command injection via the autoconnect_redirector.php script to create a PHP backdoor, then uses sudo privileges to execute arbitrary commands as root.
Description
UCOPIA Wireless Appliance < 5.1 (Captive Portal) - Root Remote Code Execution
Exploits (1)
This exploit demonstrates an unauthenticated remote code execution vulnerability in Ucopia captive portal <= 5.1. It leverages command injection via the autoconnect_redirector.php script to create a PHP backdoor, then uses sudo privileges to execute arbitrary commands as root.