EIP-2026-106213
PRE-CVEcPanel 11.x - Cross-Site Request Forgery (Edit E-mail)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-106213. PoCs published by Mon7rF ..
AI-analyzed exploit summary This is a CSRF exploit targeting Cpanel 11.X that allows an attacker to change the email address associated with a cPanel account by tricking a victim into submitting a malicious form. The exploit leverages hidden form fields to modify email settings without user interaction.
Description
cPanel 11.x - Cross-Site Request Forgery (Edit E-mail)
Exploits (1)
This is a CSRF exploit targeting Cpanel 11.X that allows an attacker to change the email address associated with a cPanel account by tricking a victim into submitting a malicious form. The exploit leverages hidden form fields to modify email settings without user interaction.