EIP-2026-105143
PRE-CVEAlumni Management System 1.0 - Unrestricted File Upload To RCE
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-105143. PoCs published by Aakash Madaan.
AI-analyzed exploit summary This exploit demonstrates an unrestricted file upload vulnerability in Alumni Management System 1.0, allowing an authenticated attacker to upload a PHP webshell and achieve remote code execution (RCE). The steps outline the process of uploading a malicious file via the 'System Settings' page and accessing it to execute arbitrary commands.
Description
Alumni Management System 1.0 - Unrestricted File Upload To RCE
Exploits (1)
This exploit demonstrates an unrestricted file upload vulnerability in Alumni Management System 1.0, allowing an authenticated attacker to upload a PHP webshell and achieve remote code execution (RCE). The steps outline the process of uploading a malicious file via the 'System Settings' page and accessing it to execute arbitrary commands.