EIP-2026-110086
PRE-CVEOnline Diagnostic Lab Management System v1.0 - Remote Code Execution (RCE) (Unauthenticated)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-110086. PoCs published by yousef alraddadi.
AI-analyzed exploit summary This exploit demonstrates an unauthenticated RCE vulnerability in Online Diagnostic Lab Management System v1.0 by bypassing login via SQL injection and uploading a malicious PHP file through a file upload vulnerability in the 'createOrder.php' endpoint.
Description
Online Diagnostic Lab Management System v1.0 - Remote Code Execution (RCE) (Unauthenticated)
Exploits (1)
This exploit demonstrates an unauthenticated RCE vulnerability in Online Diagnostic Lab Management System v1.0 by bypassing login via SQL injection and uploading a malicious PHP file through a file upload vulnerability in the 'createOrder.php' endpoint.