Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-109568. PoCs published by Sarim Kiani.
AI-analyzed exploit summary This exploit demonstrates a privilege escalation vulnerability in Monstra CMS 3.0.3, allowing any authenticated user to change the password of other users, including the administrator, by manipulating POST parameters. It also includes a persistent XSS vulnerability in the 'Edit Profile' page.
Description
Monstra CMS 3.0.3 - Multiple Vulnerabilities
Exploits (1)
This exploit demonstrates a privilege escalation vulnerability in Monstra CMS 3.0.3, allowing any authenticated user to change the password of other users, including the administrator, by manipulating POST parameters. It also includes a persistent XSS vulnerability in the 'Edit Profile' page.