References https://ddpoc.com/ https://www.cnblogs.com/tdragon6/p/17749949.html https://github.com/adysec/POC https://github.com/zan8in/wy876-POC https://mrxn.net/jswz/mamabaohe-ModuleUpHandler-rce.html https://www.secevery.com/toBugInfo?id=1859075424359596033 https://cn-sec.com/archives/3037171.html https://sxksec.cn/2025/02/27/lou-dong-zhi-shi-ku/lang-chao-yun-cai-wu-xi-tong-uploadlistfile-cun-zai-ren-yi-wen-jian-shang-chuan-lou-dong/
Related VulnerabilitiesPoCCVE-2026-5524: Divi Form Builder <=5.1.8 - Unauthenticated Arbitrary File Upload RCEPoCCVE-2026-32475: Elementor Pro <=4.2.1 - Unauthenticated Arbitrary File Upload via Form HandlerFileRise /uploads 文件读取漏洞(CVE-2026-25231)鎧應科技|CMS-WS/CMS-SE/SMP - Arbitrary File Upload網韻資訊|NewSiteServer (NSS)新式校園網站系統 - Arbitrary File UploadPoCCVE-2026-0558: LolLMS <= 2.2.0 - Unauthenticated File UploadPoCCVE-2026-13001: Podlove Podcast Publisher <= 4.5.1 - Arbitrary File UploadPoCCVE-2026-57827: RSFiles! for Joomla - Arbitrary File UploadPoCmonitorr-file-upload: Monitorr Services Configuration - Arbitrary File Upload二一零零科技|公文管理系統 - Arbitrary File UploadPoCCVE-2024-56064: WP SuperBackup <= 2.3.3 - Unauthenticated Arbitrary File Upload to RCEPoCCVE-2026-14483: Realtyna Organic IDX/WPL <= 5.2.0 - Unauthenticated Arbitrary File UploadPoCCVE-2026-14894: WordPress Super Forms <= 6.3.313 - Arbitrary File Upload