EIP-2026-109892
PRE-CVENetsweeper 4.0.9 - Arbitrary File Upload / Execution
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-109892. PoCs published by Anastasios Monachos.
AI-analyzed exploit summary This exploit leverages an arbitrary file upload vulnerability in Netsweeper 4.0.9, allowing an authenticated admin to upload and execute a malicious shell script with root privileges. The script creates a backdoor PHP shell, adds a new user with sudo privileges, and exfiltrates /etc/shadow via netcat.
Description
Netsweeper 4.0.9 - Arbitrary File Upload / Execution
Exploits (1)
This exploit leverages an arbitrary file upload vulnerability in Netsweeper 4.0.9, allowing an authenticated admin to upload and execute a malicious shell script with root privileges. The script creates a backdoor PHP shell, adds a new user with sudo privileges, and exfiltrates /etc/shadow via netcat.