EIP-2026-118637
PRE-CVEHome FTP Server 1.10.3 (build 144) - Cross-Site Request Forgery
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-118637. PoCs published by John Leitch.
AI-analyzed exploit summary This exploit demonstrates a CSRF vulnerability in Home FTP Server 1.10.3 (build 144) by crafting an HTML image tag that sends a malicious request to add a new user with administrative privileges. The attack leverages the lack of CSRF protection to perform unauthorized actions.
Description
Home FTP Server 1.10.3 (build 144) - Cross-Site Request Forgery
Exploits (1)
This exploit demonstrates a CSRF vulnerability in Home FTP Server 1.10.3 (build 144) by crafting an HTML image tag that sends a malicious request to add a new user with administrative privileges. The attack leverages the lack of CSRF protection to perform unauthorized actions.