EIP-2026-113333
PRE-CVEwebo site speedup 1.6.1 - Multiple Vulnerabilities
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-113333. PoCs published by dun.
AI-analyzed exploit summary This exploit demonstrates multiple vulnerabilities in WEBO Site SpeedUp <= 1.6.1, including Remote File Inclusion (RFI) and Local File Inclusion (LFI). The RFI is triggered via the `basepath` parameter when `allow_url_include` and `register_globals` are enabled, while the LFI is exploited through the `wss_lang` cookie when `magic_quotes_gpc` is disabled.
Description
webo site speedup 1.6.1 - Multiple Vulnerabilities
Exploits (1)
This exploit demonstrates multiple vulnerabilities in WEBO Site SpeedUp <= 1.6.1, including Remote File Inclusion (RFI) and Local File Inclusion (LFI). The RFI is triggered via the `basepath` parameter when `allow_url_include` and `register_globals` are enabled, while the LFI is exploited through the `wss_lang` cookie when `magic_quotes_gpc` is disabled.