EIP-2026-113841
PRE-CVEWordpress Plugin iQ Block Country 1.2.13 - Arbitrary File Deletion via Zip Slip (Authenticated)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-113841. PoCs published by Ceylan BOZOĞULLARINDAN.
AI-analyzed exploit summary This is a technical writeup detailing a Zip Slip vulnerability in the Wordpress Plugin iQ Block Country 1.2.13, allowing authenticated users to delete arbitrary files on the server by uploading a specially crafted zip file. The vulnerability arises due to improper handling of file paths during extraction.
Description
Wordpress Plugin iQ Block Country 1.2.13 - Arbitrary File Deletion via Zip Slip (Authenticated)
Exploits (1)
This is a technical writeup detailing a Zip Slip vulnerability in the Wordpress Plugin iQ Block Country 1.2.13, allowing authenticated users to delete arbitrary files on the server by uploading a specially crafted zip file. The vulnerability arises due to improper handling of file paths during extraction.