EIP-2026-114647
PRE-CVEZoopeer 0.1/0.2 - 'FCKeditor' Arbitrary File Upload
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-114647. PoCs published by Net.Edit0r.
AI-analyzed exploit summary This exploit demonstrates a file upload vulnerability in Zoopeer 0.1 & 0.2 via the FCKeditor component, allowing an attacker to upload a malicious PHP shell by renaming it with a .php4 extension. The exploit leverages a misconfiguration in the file manager to bypass restrictions.
Description
Zoopeer 0.1/0.2 - 'FCKeditor' Arbitrary File Upload
Exploits (1)
This exploit demonstrates a file upload vulnerability in Zoopeer 0.1 & 0.2 via the FCKeditor component, allowing an attacker to upload a malicious PHP shell by renaming it with a .php4 extension. The exploit leverages a misconfiguration in the file manager to bypass restrictions.