EIP-2026-104782
PRE-CVETh3 MMA - 'mma.php' Backdoor Arbitrary File Upload (Metasploit)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-104782. PoCs published by Metasploit.
AI-analyzed exploit summary This Metasploit module exploits an arbitrary file upload vulnerability in the Th3 MMA mma.php backdoor, allowing remote code execution by uploading a malicious PHP payload. The exploit checks for the presence of the vulnerable form and uploads a payload, then triggers it via a GET request.
Description
Th3 MMA - 'mma.php' Backdoor Arbitrary File Upload (Metasploit)
Exploits (1)
This Metasploit module exploits an arbitrary file upload vulnerability in the Th3 MMA mma.php backdoor, allowing remote code execution by uploading a malicious PHP payload. The exploit checks for the presence of the vulnerable form and uploads a payload, then triggers it via a GET request.