
Proof-of-concept exploit for CVE-2026-21721 that escalates privileges to admin on affected dashboards, requiring a valid Editor account.
Wrote an exploit for CVE-2026-21721 and tested it on a test bench.
A combat privilege escalator: logs in, reads permissions, writes Admin (permission=4) on all dashboards.
*A valid account with Editor rights is required for exploitation.
Here is the fingerprint on which the PoC is confirmed:
{
"database": "ok",
"version": "12.1.1"
}
This material is provided solely for informational and educational purposes.
Use only on your own test systems or with the owner's consent