EIP-2026-108491
PRE-CVEJoomla! Component com_poweradmin 2.3.0 - Multiple Vulnerabilities
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-108491. PoCs published by RatioSec Research.
AI-analyzed exploit summary The exploit demonstrates a CSRF vulnerability in JSN PowerAdmin Joomla! Extension that allows an authenticated user to upload a malicious PHP file via a crafted HTTP request, bypassing file validation checks. Additionally, it includes an XSS vulnerability that can execute arbitrary JavaScript in the context of an administrator's session.
Description
Joomla! Component com_poweradmin 2.3.0 - Multiple Vulnerabilities
Exploits (1)
The exploit demonstrates a CSRF vulnerability in JSN PowerAdmin Joomla! Extension that allows an authenticated user to upload a malicious PHP file via a crafted HTTP request, bypassing file validation checks. Additionally, it includes an XSS vulnerability that can execute arbitrary JavaScript in the context of an administrator's session.