Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-107087. PoCs published by Jeremiah Talamantes.
AI-analyzed exploit summary This writeup describes a file security bypass vulnerability in File Thingie v2.5.5, where an attacker can upload a text file containing PHP code and rename it to a .php extension for execution. The exploit involves uploading a backdoored .inc file and a .txt file with PHP code to overwrite ft2.php.
Description
File Thingie 2.5.5 - File Security Bypass
Exploits (1)
This writeup describes a file security bypass vulnerability in File Thingie v2.5.5, where an attacker can upload a text file containing PHP code and rename it to a .php extension for execution. The exploit involves uploading a backdoored .inc file and a .txt file with PHP code to overwrite ft2.php.