EIP-2026-104691
PRE-CVEABB Cylon Aspect 3.08.03 (webServerDeviceLabelUpdate.php) - File Write DoS
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-104691. PoCs published by LiquidWorm.
AI-analyzed exploit summary This exploit demonstrates an authenticated arbitrary content injection vulnerability in ABB Cylon Aspect's webServerDeviceLabelUpdate.php script. By sending a large payload via the 'deviceLabel' POST parameter, an attacker can overwrite the /usr/local/aam/etc/deviceLabel file, leading to a denial of service (DoS).
Description
ABB Cylon Aspect 3.08.03 (webServerDeviceLabelUpdate.php) - File Write DoS
Exploits (1)
This exploit demonstrates an authenticated arbitrary content injection vulnerability in ABB Cylon Aspect's webServerDeviceLabelUpdate.php script. By sending a large payload via the 'deviceLabel' POST parameter, an attacker can overwrite the /usr/local/aam/etc/deviceLabel file, leading to a denial of service (DoS).