EIP-2026-105065

PRE-CVE

al3jeb script - Remote Change Password

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-105065. PoCs published by alnjm33.

AI-analyzed exploit summary This exploit is an HTML form designed to remotely change the password of the 'al3jeb' script by submitting a POST request to 'Change_Pass.php'. It allows an attacker to modify the admin credentials and email without prior authentication.

Description

al3jeb script - Remote Change Password

Exploits (1)

exploitdb WORKING POC
by alnjm33 · htmlwebappsphp
https://www.exploit-db.com/exploits/11185

This exploit is an HTML form designed to remotely change the password of the 'al3jeb' script by submitting a POST request to 'Change_Pass.php'. It allows an attacker to modify the admin credentials and email without prior authentication.

Classification
Working Poc 90%
Attack Type
Auth Bypass
Complexity
Trivial
Reliability
Reliable
Target: al3jeb script version 1.3
No auth needed
Prerequisites: Access to the target URL · Knowledge of the 'Change_Pass.php' endpoint
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026