EIP-2026-109381
PRE-CVEMedDream PACS Server 6.8.3.751 - Remote Code Execution (Unauthenticated)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-109381. PoCs published by bzyo.
AI-analyzed exploit summary This exploit targets MedDream PACS Server 6.8.3.751, allowing unauthenticated remote code execution by uploading a malicious PHP file via the uploadImage.php endpoint. The script then attempts to locate the uploaded file by checking multiple timestamp variations to trigger command execution.
Description
MedDream PACS Server 6.8.3.751 - Remote Code Execution (Unauthenticated)
Exploits (1)
This exploit targets MedDream PACS Server 6.8.3.751, allowing unauthenticated remote code execution by uploading a malicious PHP file via the uploadImage.php endpoint. The script then attempts to locate the uploaded file by checking multiple timestamp variations to trigger command execution.