EIP-2026-109285
PRE-CVEMambo Component Display MOSBot Manager - 'MosConfig_absolute_path' Remote File Inclusion
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-109285. PoCs published by O.U.T.L.A.W.
AI-analyzed exploit summary The code describes a remote file inclusion vulnerability in the Mambo Display MOSBot Manager component due to improper input sanitization. An attacker can exploit this to execute arbitrary PHP code by including a remote file via the 'mosConfig_absolute_path' parameter.
Description
Mambo Component Display MOSBot Manager - 'MosConfig_absolute_path' Remote File Inclusion
Exploits (1)
The code describes a remote file inclusion vulnerability in the Mambo Display MOSBot Manager component due to improper input sanitization. An attacker can exploit this to execute arbitrary PHP code by including a remote file via the 'mosConfig_absolute_path' parameter.