EIP-2026-107965
PRE-CVEiScripts Socialware 2.2.x - Arbitrary File Upload
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-107965. PoCs published by Salvatore Fresta.
AI-analyzed exploit summary This exploit demonstrates an arbitrary file upload vulnerability in iScripts SocialWare 2.2.x by bypassing content-type and file extension checks to upload a malicious PHP shell. It authenticates with provided credentials and uploads a file with a .php5 extension to execute arbitrary commands.
Description
iScripts Socialware 2.2.x - Arbitrary File Upload
Exploits (1)
This exploit demonstrates an arbitrary file upload vulnerability in iScripts SocialWare 2.2.x by bypassing content-type and file extension checks to upload a malicious PHP shell. It authenticates with provided credentials and uploads a file with a .php5 extension to execute arbitrary commands.