EIP-2026-101110

PRE-CVE

Xavi X7028r DSL Router - UPNP Long Request Denial of Service

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-101110. PoCs published by David F. Madrid.

AI-analyzed exploit summary The exploit demonstrates a DoS vulnerability in the Xavi X7028r DSL router by sending an excessively long HTTP GET request to port 280, causing the device to crash. The PoC uses Perl to generate the malformed request and netcat to deliver it.

Description

Xavi X7028r DSL Router - UPNP Long Request Denial of Service

Exploits (1)

exploitdb WORKING POC VERIFIED
by David F. Madrid · textdoshardware
https://www.exploit-db.com/exploits/22950

The exploit demonstrates a DoS vulnerability in the Xavi X7028r DSL router by sending an excessively long HTTP GET request to port 280, causing the device to crash. The PoC uses Perl to generate the malformed request and netcat to deliver it.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: Xavi X7028r DSL router
No auth needed
Prerequisites: Network access to the target router · Port 280 accessible
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026