Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-105259. PoCs published by indoushka.
AI-analyzed exploit summary The exploit demonstrates a Remote File Inclusion (RFI) vulnerability in asaher pro 1.0 by injecting malicious input into the 'row_y5_site_configuration[templates_folder]' parameter across multiple endpoints. The PoC provides specific URLs to exploit the vulnerability, allowing remote code execution by including arbitrary files.
Description
asaher pro 1.0 - Remote File Inclusion
Exploits (1)
The exploit demonstrates a Remote File Inclusion (RFI) vulnerability in asaher pro 1.0 by injecting malicious input into the 'row_y5_site_configuration[templates_folder]' parameter across multiple endpoints. The PoC provides specific URLs to exploit the vulnerability, allowing remote code execution by including arbitrary files.