EIP-2026-112874

PRE-CVE

Ultimate Fade-in Slideshow 1.51 - Arbitrary File Upload

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-112874. PoCs published by NeX HaCkEr.

AI-analyzed exploit summary This is a writeup describing a shell upload vulnerability in Ultimate Fade-in slideshow 1.51. It outlines steps to register, navigate to an event upload page, and upload a malicious shell file.

Description

Ultimate Fade-in Slideshow 1.51 - Arbitrary File Upload

Exploits (1)

exploitdb WRITEUP VERIFIED
by NeX HaCkEr · textwebappsphp
https://www.exploit-db.com/exploits/9469

This is a writeup describing a shell upload vulnerability in Ultimate Fade-in slideshow 1.51. It outlines steps to register, navigate to an event upload page, and upload a malicious shell file.

Classification
Writeup 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Theoretical
Target: Ultimate Fade-in slideshow 1.51
Auth required
Prerequisites: Access to user registration · Access to event upload functionality
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026