EIP-2026-114292
PRE-CVEWordPress Plugin Zingiri 2.2.3 - 'ajax_save_name.php' Remote Code Execution
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-114292. PoCs published by EgiX.
AI-analyzed exploit summary This exploit targets a vulnerability in the Wordpress Zingiri Web Shop Plugin <= 2.2.3, allowing remote code execution by manipulating the $selectedDocuments array to write arbitrary PHP code into a file. The exploit establishes a shell by leveraging the vulnerable 'ajax_save_name.php' script.
Description
WordPress Plugin Zingiri 2.2.3 - 'ajax_save_name.php' Remote Code Execution
Exploits (1)
This exploit targets a vulnerability in the Wordpress Zingiri Web Shop Plugin <= 2.2.3, allowing remote code execution by manipulating the $selectedDocuments array to write arbitrary PHP code into a file. The exploit establishes a shell by leveraging the vulnerable 'ajax_save_name.php' script.