EIP-2026-108466
PRE-CVEJoomla! Component com_osproperty 2.0.2 - Unrestricted Arbitrary File Upload
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-108466. PoCs published by D4NB4R.
AI-analyzed exploit summary This exploit demonstrates an unrestricted file upload vulnerability in Joomla's com_osproperty component, allowing an attacker to upload a malicious PHP shell by substituting it for a profile photo during agent registration. The uploaded shell can then be accessed via a predictable path in the /osproperty/agent/ directory.
Description
Joomla! Component com_osproperty 2.0.2 - Unrestricted Arbitrary File Upload
Exploits (1)
This exploit demonstrates an unrestricted file upload vulnerability in Joomla's com_osproperty component, allowing an attacker to upload a malicious PHP shell by substituting it for a profile photo during agent registration. The uploaded shell can then be accessed via a predictable path in the /osproperty/agent/ directory.