EIP-2026-107199

PRE-CVE

Forum Russian Board 4.2 - Full Command Execution

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-107199. PoCs published by RusH.

AI-analyzed exploit summary This exploit targets Forum Russian Board 4.2 Full by injecting a PHP backdoor into the style template via an authenticated admin session, enabling remote command execution. It supports creating, deleting, and executing commands through the injected shell.

Description

Forum Russian Board 4.2 - Full Command Execution

Exploits (1)

exploitdb WORKING POC VERIFIED
by RusH · perlwebappsphp
https://www.exploit-db.com/exploits/1060

This exploit targets Forum Russian Board 4.2 Full by injecting a PHP backdoor into the style template via an authenticated admin session, enabling remote command execution. It supports creating, deleting, and executing commands through the injected shell.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Forum Russian Board 4.2 Full
Auth required
Prerequisites: Admin credentials (username and ID) · Access to the admin panel (style_edit.php)
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026