Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-110682. PoCs published by Ihsan Sencan.
AI-analyzed exploit summary This exploit demonstrates a Local File Inclusion (LFI) vulnerability in PHP Dashboards NEW 5.8 by manipulating the 'filename' parameter in a POST request to read arbitrary files (e.g., /etc/passwd). The PoC includes a raw HTTP request showing the vulnerable endpoint and payload.
Description
PHP Dashboards NEW 5.8 - Local File Inclusion
Exploits (1)
This exploit demonstrates a Local File Inclusion (LFI) vulnerability in PHP Dashboards NEW 5.8 by manipulating the 'filename' parameter in a POST request to read arbitrary files (e.g., /etc/passwd). The PoC includes a raw HTTP request showing the vulnerable endpoint and payload.