EIP-2026-100710

PRE-CVE

GTChat 0.95 Alpha - Remote Denial of Service

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-100710. PoCs published by RusH.

AI-analyzed exploit summary This Perl script exploits a directory traversal vulnerability in GTChat <= 0.95 Alpha, allowing remote file disclosure (e.g., /etc/resolv.conf) and DoS via recursive requests. The PoC uses LWP::Simple to send crafted HTTP requests with null-byte termination.

Description

GTChat 0.95 Alpha - Remote Denial of Service

Exploits (1)

exploitdb WORKING POC VERIFIED
by RusH · perldoscgi
https://www.exploit-db.com/exploits/1157

This Perl script exploits a directory traversal vulnerability in GTChat <= 0.95 Alpha, allowing remote file disclosure (e.g., /etc/resolv.conf) and DoS via recursive requests. The PoC uses LWP::Simple to send crafted HTTP requests with null-byte termination.

Classification
Working Poc 95%
Attack Type
Info Leak | Dos
Complexity
Trivial
Reliability
Reliable
Target: GTChat <= 0.95 Alpha
No auth needed
Prerequisites: Network access to the target server · GTChat chat.pl endpoint accessible
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026