EIP-2026-109028
PRE-CVEKnowledgeBuilder 2.2 - 'visEdit_Control.Class.php' Remote File Inclusion
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-109028. PoCs published by igi.
AI-analyzed exploit summary This Perl script exploits a remote file inclusion vulnerability in KnowledgeBuilder v2.2 by injecting a malicious URL parameter to include and execute arbitrary shell code. It allows remote command execution by leveraging unsanitized user input in the 'visEdit_root' parameter.
Description
KnowledgeBuilder 2.2 - 'visEdit_Control.Class.php' Remote File Inclusion
Exploits (1)
This Perl script exploits a remote file inclusion vulnerability in KnowledgeBuilder v2.2 by injecting a malicious URL parameter to include and execute arbitrary shell code. It allows remote command execution by leveraging unsanitized user input in the 'visEdit_root' parameter.