Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-104956. PoCs published by Mirabbas Ağalarov.
AI-analyzed exploit summary This exploit demonstrates a Remote Code Execution (RCE) vulnerability in Admidio v4.2.10 by uploading a malicious .phar file through the CKEditor upload handler. The .phar file contains PHP code that executes system commands, allowing arbitrary command execution when accessed.
Description
Admidio v4.2.10 - Remote Code Execution (RCE)
Exploits (1)
This exploit demonstrates a Remote Code Execution (RCE) vulnerability in Admidio v4.2.10 by uploading a malicious .phar file through the CKEditor upload handler. The .phar file contains PHP code that executes system commands, allowing arbitrary command execution when accessed.