EIP-2026-108660
PRE-CVEJoomla! Component GMapFP 3.30 - Arbitrary File Upload
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-108660. PoCs published by ThelastVvV.
AI-analyzed exploit summary This exploit demonstrates an arbitrary file upload vulnerability in Joomla! Component GMapFP 3.30, allowing attackers to bypass file extension restrictions by uploading malicious files with double extensions (e.g., file.php.png). The uploaded files can be accessed directly, leading to potential remote code execution (RCE).
Description
Joomla! Component GMapFP 3.30 - Arbitrary File Upload
Exploits (1)
This exploit demonstrates an arbitrary file upload vulnerability in Joomla! Component GMapFP 3.30, allowing attackers to bypass file extension restrictions by uploading malicious files with double extensions (e.g., file.php.png). The uploaded files can be accessed directly, leading to potential remote code execution (RCE).