EIP-2026-107776
PRE-CVEIgnition 1.3 - 'page.php' Local File Inclusion
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-107776. PoCs published by cOndemned.
AI-analyzed exploit summary This exploit demonstrates a Local File Inclusion (LFI) vulnerability in Ignition 1.3 due to improper input validation in the 'page' parameter. The PoC shows how an attacker can traverse directories to read arbitrary files, such as '/etc/passwd', by appending null bytes to bypass file extension checks.
Description
Ignition 1.3 - 'page.php' Local File Inclusion
Exploits (1)
This exploit demonstrates a Local File Inclusion (LFI) vulnerability in Ignition 1.3 due to improper input validation in the 'page' parameter. The PoC shows how an attacker can traverse directories to read arbitrary files, such as '/etc/passwd', by appending null bytes to bypass file extension checks.