Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-105686. PoCs published by pokleyzz.
AI-analyzed exploit summary The exploit demonstrates a remote file inclusion vulnerability in Cafelog's 'blogger-2-b2.php' and 'gm-2-b2.php' scripts due to insufficient sanitization of user-supplied input. An attacker can include a malicious PHP file via the 'b2inc' parameter, leading to remote code execution with web server privileges.
Description
Cafelog b2 0.6 - Remote File Inclusion
Exploits (1)
The exploit demonstrates a remote file inclusion vulnerability in Cafelog's 'blogger-2-b2.php' and 'gm-2-b2.php' scripts due to insufficient sanitization of user-supplied input. An attacker can include a malicious PHP file via the 'b2inc' parameter, leading to remote code execution with web server privileges.