EIP-2026-106294
PRE-CVECustomer Support System 1.0 - Cross-Site Request Forgery
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-106294. PoCs published by Ahmed Abbas.
AI-analyzed exploit summary This exploit demonstrates a Cross-Site Request Forgery (CSRF) vulnerability in Customer Support System 1.0, allowing an attacker to change the admin password by tricking an authenticated admin into submitting a crafted form. The PoC includes a functional HTML form that submits a POST request to the vulnerable endpoint with forged parameters.
Description
Customer Support System 1.0 - Cross-Site Request Forgery
Exploits (1)
This exploit demonstrates a Cross-Site Request Forgery (CSRF) vulnerability in Customer Support System 1.0, allowing an attacker to change the admin password by tricking an authenticated admin into submitting a crafted form. The PoC includes a functional HTML form that submits a POST request to the vulnerable endpoint with forged parameters.