EIP-2026-100612

PRE-CVE

Web Calendar - Remote Database Disclosure

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-100612. PoCs published by RENO.

AI-analyzed exploit summary This is a technical writeup describing a remote database disclosure vulnerability in WEB Calendar software. The vulnerability allows unauthorized access to the calendar35.mdb database file via a direct URL request.

Description

Web Calendar - Remote Database Disclosure

Exploits (1)

exploitdb WRITEUP VERIFIED
by RENO · textwebappsasp
https://www.exploit-db.com/exploits/10794

This is a technical writeup describing a remote database disclosure vulnerability in WEB Calendar software. The vulnerability allows unauthorized access to the calendar35.mdb database file via a direct URL request.

Classification
Writeup 80%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: WEB Calendar (version unspecified, likely 3.5 or 3.6)
No auth needed
Prerequisites: Knowledge of the target server path
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026