EIP-2026-100840

PRE-CVE

Kebi Academy 2001 - Input Validation

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-100840. PoCs published by dong-h0un U.

AI-analyzed exploit summary The provided text describes a directory traversal and arbitrary file upload vulnerability in Kebi Academy 2001, allowing attackers to read sensitive files or execute arbitrary commands via malicious file uploads. The example URI demonstrates path traversal to access '/etc/passwd'.

Description

Kebi Academy 2001 - Input Validation

Exploits (1)

exploitdb WRITEUP VERIFIED
by dong-h0un U · textwebappscgi
https://www.exploit-db.com/exploits/22377

The provided text describes a directory traversal and arbitrary file upload vulnerability in Kebi Academy 2001, allowing attackers to read sensitive files or execute arbitrary commands via malicious file uploads. The example URI demonstrates path traversal to access '/etc/passwd'.

Classification
Writeup 90%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: Kebi Academy 2001
No auth needed
Prerequisites: Network access to the target web server
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026