EIP-2026-104117
PRE-CVEVitek - Remote Command Execution / Information Disclosure (PoC)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-104117. PoCs published by bashis.
AI-analyzed exploit summary This exploit demonstrates a stack overflow RCE and PHP RCE in Vitek DVR devices, leveraging a crafted HTTP request to execute arbitrary commands via a reverse shell. It also includes methods for information disclosure, such as extracting credentials and configuration data.
Description
Vitek - Remote Command Execution / Information Disclosure (PoC)
Exploits (1)
This exploit demonstrates a stack overflow RCE and PHP RCE in Vitek DVR devices, leveraging a crafted HTTP request to execute arbitrary commands via a reverse shell. It also includes methods for information disclosure, such as extracting credentials and configuration data.