EIP-2026-108598
PRE-CVEJoomla! Component com_xcloner-backupandrestore - Remote Command Execution
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-108598. PoCs published by mr_me.
AI-analyzed exploit summary This exploit targets a remote code execution vulnerability in the Joomla component com_xcloner-backupandrestore. It leverages improper input validation in the XCloner.php script to overwrite the configuration.php file with malicious code via the 'output_url_pref' parameter.
Description
Joomla! Component com_xcloner-backupandrestore - Remote Command Execution
Exploits (1)
This exploit targets a remote code execution vulnerability in the Joomla component com_xcloner-backupandrestore. It leverages improper input validation in the XCloner.php script to overwrite the configuration.php file with malicious code via the 'output_url_pref' parameter.