EIP-2026-109302
PRE-CVEMambo Module MOStlyCE 2.4 Image Manager Utility - Arbitrary File Upload
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-109302. PoCs published by AmnPardaz.
AI-analyzed exploit summary This exploit leverages an arbitrary file upload vulnerability in the MOStlyCE module for Mambo. By manipulating the 'file[NewFile][tmp_name]' parameter, an attacker can upload a malicious file (e.g., configuration.php) to the server, potentially leading to remote code execution.
Description
Mambo Module MOStlyCE 2.4 Image Manager Utility - Arbitrary File Upload
Exploits (1)
This exploit leverages an arbitrary file upload vulnerability in the MOStlyCE module for Mambo. By manipulating the 'file[NewFile][tmp_name]' parameter, an attacker can upload a malicious file (e.g., configuration.php) to the server, potentially leading to remote code execution.