EIP-2026-113945
PRE-CVEWordPress Plugin page-flip-image-gallery - Arbitrary File Upload
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-113945. PoCs published by Ashiyane Digital Security Team.
AI-analyzed exploit summary This PHP script exploits a remote file upload vulnerability in the WordPress 'page-flip-image-gallery' plugin by sending a crafted POST request to upload.php, allowing arbitrary file upload. The exploit leverages cURL to upload a file named 'file.php' to the target server.
Description
WordPress Plugin page-flip-image-gallery - Arbitrary File Upload
Exploits (1)
This PHP script exploits a remote file upload vulnerability in the WordPress 'page-flip-image-gallery' plugin by sending a crafted POST request to upload.php, allowing arbitrary file upload. The exploit leverages cURL to upload a file named 'file.php' to the target server.