EIP-2026-107114
PRE-CVEFlash Operator Panel 2.31.03 - Command Execution
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-107114. PoCs published by Vulnerability-Lab.
AI-analyzed exploit summary This advisory details a command injection vulnerability in Flash Operator Panel v2.31.03, where the `command` parameter in `index.php` allows authenticated users to execute arbitrary system commands via the callforward module. The vulnerability is exploitable via a GET request and requires low-privileged authentication.
Description
Flash Operator Panel 2.31.03 - Command Execution
Exploits (1)
This advisory details a command injection vulnerability in Flash Operator Panel v2.31.03, where the `command` parameter in `index.php` allows authenticated users to execute arbitrary system commands via the callforward module. The vulnerability is exploitable via a GET request and requires low-privileged authentication.