EIP-2026-112155
PRE-CVEsimplePms CMS 0.1.4 - Local File Inclusion / Remote Command Execution
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-112155. PoCs published by Osirys.
AI-analyzed exploit summary This Perl script exploits a remote command execution vulnerability in SimplePMS CMS v0.1.3a by injecting malicious PHP code into a post, which is then executed via a crafted HTTP request. The exploit leverages improper input sanitization and command injection to achieve RCE.
Description
simplePms CMS 0.1.4 - Local File Inclusion / Remote Command Execution
Exploits (1)
This Perl script exploits a remote command execution vulnerability in SimplePMS CMS v0.1.3a by injecting malicious PHP code into a post, which is then executed via a crafted HTTP request. The exploit leverages improper input sanitization and command injection to achieve RCE.