EIP-2026-105008
PRE-CVEAFCommerce - 'adminpassword.php' Remote File Inclusion
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-105008. PoCs published by NoGe.
AI-analyzed exploit summary The provided text describes a remote file inclusion (RFI) vulnerability in AFCommerce, where insufficient input sanitization allows attackers to include arbitrary remote files via the 'rootpathtocart' parameter in 'adminpassword.php'. No actual exploit code is present, only a description and example URL.
Description
AFCommerce - 'adminpassword.php' Remote File Inclusion
Exploits (1)
The provided text describes a remote file inclusion (RFI) vulnerability in AFCommerce, where insufficient input sanitization allows attackers to include arbitrary remote files via the 'rootpathtocart' parameter in 'adminpassword.php'. No actual exploit code is present, only a description and example URL.