EIP-2026-114671
PRE-CVEMailcleaner - (Authenticated) Remote Code Execution (Metasploit)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-114671. PoCs published by Mehmet Ince.
AI-analyzed exploit summary This Metasploit module exploits a command injection vulnerability in MailCleaner Community Edition via the `/admin/managetracing/search/search` endpoint, allowing authenticated users to execute arbitrary commands as root. The exploit leverages improper input validation in the `domain` parameter to inject payloads.
Description
Mailcleaner - (Authenticated) Remote Code Execution (Metasploit)
Exploits (1)
This Metasploit module exploits a command injection vulnerability in MailCleaner Community Edition via the `/admin/managetracing/search/search` endpoint, allowing authenticated users to execute arbitrary commands as root. The exploit leverages improper input validation in the `domain` parameter to inject payloads.