EIP-2026-104323
PRE-CVEManageEngine EventLog Analyzer 4.0 < 10 - Privilege Escalation
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-104323. PoCs published by GraphX.
AI-analyzed exploit summary The exploit demonstrates a privilege escalation vulnerability in ManageEngine Eventlog Analyzer by manipulating the USER_ID parameter to change the admin password without proper authorization. The PoC provides a direct URL to exploit the flaw, allowing an unprivileged user to escalate privileges to admin.
Description
ManageEngine EventLog Analyzer 4.0 < 10 - Privilege Escalation
Exploits (1)
The exploit demonstrates a privilege escalation vulnerability in ManageEngine Eventlog Analyzer by manipulating the USER_ID parameter to change the admin password without proper authorization. The PoC provides a direct URL to exploit the flaw, allowing an unprivileged user to escalate privileges to admin.