EIP-2026-119007
PRE-CVEOracle BeeHive 2 - 'voice-servlet prepareAudioToPlay()' Arbitrary File Upload (Metasploit)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-119007. PoCs published by Metasploit.
AI-analyzed exploit summary This Metasploit module exploits an arbitrary file upload vulnerability in Oracle BeeHive 2 via the voice-servlet's prepareAudioToPlay() method. It uploads a JSP stager and a malicious executable to achieve remote code execution under the SYSTEM context without authentication.
Description
Oracle BeeHive 2 - 'voice-servlet prepareAudioToPlay()' Arbitrary File Upload (Metasploit)
Exploits (1)
This Metasploit module exploits an arbitrary file upload vulnerability in Oracle BeeHive 2 via the voice-servlet's prepareAudioToPlay() method. It uploads a JSP stager and a malicious executable to achieve remote code execution under the SYSTEM context without authentication.