Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-109940. PoCs published by ADEO Security.
AI-analyzed exploit summary This is a functional CSRF exploit for NinkoBB 1.3RC5 that allows an attacker to escalate privileges by tricking an admin into submitting a crafted form. The PoC demonstrates how an attacker can modify an admin's account details, including granting admin privileges to a malicious user.
Description
NinkoBB - Cross-Site Request Forgery
Exploits (1)
This is a functional CSRF exploit for NinkoBB 1.3RC5 that allows an attacker to escalate privileges by tricking an admin into submitting a crafted form. The PoC demonstrates how an attacker can modify an admin's account details, including granting admin privileges to a malicious user.