EIP-2026-101165
PRE-CVEAuerswald COMpact 8.0B - Arbitrary File Disclosure
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-101165. PoCs published by RedTeam Pentesting GmbH.
AI-analyzed exploit summary This exploit demonstrates an arbitrary file disclosure vulnerability in Auerswald COMpact PBX devices. It leverages directory traversal via the 'wartemusik_verwaltung_play' and 'logo_verwaltung_preview' endpoints to access sensitive files, including the SQLite database containing admin credentials.
Description
Auerswald COMpact 8.0B - Arbitrary File Disclosure
Exploits (1)
This exploit demonstrates an arbitrary file disclosure vulnerability in Auerswald COMpact PBX devices. It leverages directory traversal via the 'wartemusik_verwaltung_play' and 'logo_verwaltung_preview' endpoints to access sensitive files, including the SQLite database containing admin credentials.