EIP-2026-110136
PRE-CVEOnline Leave Management System 1.0 - Arbitrary File Upload to Shell (Unauthenticated)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-110136. PoCs published by Justin White.
AI-analyzed exploit summary This exploit demonstrates an unauthenticated arbitrary file upload vulnerability in Online Leave Management System 1.0, leveraging SQL injection for authentication bypass and uploading a PHP reverse shell. The payload executes a reverse shell to a specified attacker IP and port.
Description
Online Leave Management System 1.0 - Arbitrary File Upload to Shell (Unauthenticated)
Exploits (1)
This exploit demonstrates an unauthenticated arbitrary file upload vulnerability in Online Leave Management System 1.0, leveraging SQL injection for authentication bypass and uploading a PHP reverse shell. The payload executes a reverse shell to a specified attacker IP and port.