EIP-2026-106951
PRE-CVEExam Hall Management System 1.0 - Unrestricted File Upload (Unauthenticated)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-106951. PoCs published by Thamer Almohammadi.
AI-analyzed exploit summary This exploit demonstrates an unauthenticated file upload vulnerability in Exam Hall Management System 1.0, allowing arbitrary PHP file upload via the `/pages/save_user.php` endpoint. The PoC includes a PHP script to automate the upload and verify shell placement.
Description
Exam Hall Management System 1.0 - Unrestricted File Upload (Unauthenticated)
Exploits (1)
This exploit demonstrates an unauthenticated file upload vulnerability in Exam Hall Management System 1.0, allowing arbitrary PHP file upload via the `/pages/save_user.php` endpoint. The PoC includes a PHP script to automate the upload and verify shell placement.