EIP-2026-114662
PRE-CVEZZ:FlashChat 3.1 - 'adminlog' Remote File Inclusion
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-114662. PoCs published by SHiKaA.
AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in FlashChat <= V3.1 due to improper input validation in the 'adminlog' parameter. The exploit allows an attacker to include and execute arbitrary remote PHP code by manipulating the 'cfg[autolink]' and 'adminlog' parameters.
Description
ZZ:FlashChat 3.1 - 'adminlog' Remote File Inclusion
Exploits (1)
This exploit demonstrates a remote file inclusion vulnerability in FlashChat <= V3.1 due to improper input validation in the 'adminlog' parameter. The exploit allows an attacker to include and execute arbitrary remote PHP code by manipulating the 'cfg[autolink]' and 'adminlog' parameters.