EIP-2026-106798
PRE-CVEEggAvatar 2.3.2 for vBulletin 3.8.x - Local File Read
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-106798. PoCs published by DSecurity.
AI-analyzed exploit summary This Perl script exploits a local file read vulnerability in the EggAvatar plugin for vBulletin 3.8.x by sending a crafted HTTP request to 'eggavatar.php' with a manipulated 'old' parameter. The script uses LWP::UserAgent to fetch and display the content of the targeted file.
Description
EggAvatar 2.3.2 for vBulletin 3.8.x - Local File Read
Exploits (1)
This Perl script exploits a local file read vulnerability in the EggAvatar plugin for vBulletin 3.8.x by sending a crafted HTTP request to 'eggavatar.php' with a manipulated 'old' parameter. The script uses LWP::UserAgent to fetch and display the content of the targeted file.