EIP-2026-104724
PRE-CVEeXtplorer 2.1 - Arbitrary File Upload (Metasploit)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-104724. PoCs published by Metasploit.
AI-analyzed exploit summary This Metasploit module exploits an authentication bypass vulnerability in eXtplorer v2.1 to upload and execute arbitrary PHP files, achieving remote code execution. It bypasses authentication by sending a malformed password parameter and then uploads a PHP payload to a writable directory.
Description
eXtplorer 2.1 - Arbitrary File Upload (Metasploit)
Exploits (1)
This Metasploit module exploits an authentication bypass vulnerability in eXtplorer v2.1 to upload and execute arbitrary PHP files, achieving remote code execution. It bypasses authentication by sending a malformed password parameter and then uploads a PHP payload to a writable directory.