EIP-2026-104015

PRE-CVE

OpenWFE 1.4.x - Cross-Site Scripting / Connection Proxy

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-104015. PoCs published by Joxean Koret.

AI-analyzed exploit summary The exploit demonstrates a cross-site scripting (XSS) and connection proxy vulnerability in OpenWFE. The XSS payload is embedded in an RMI URL, while the proxy issue allows scanning arbitrary network hosts via RMI connections.

Description

OpenWFE 1.4.x - Cross-Site Scripting / Connection Proxy

Exploits (1)

exploitdb WORKING POC VERIFIED
by Joxean Koret · textremotemultiple
https://www.exploit-db.com/exploits/24701

The exploit demonstrates a cross-site scripting (XSS) and connection proxy vulnerability in OpenWFE. The XSS payload is embedded in an RMI URL, while the proxy issue allows scanning arbitrary network hosts via RMI connections.

Classification
Working Poc 90%
Attack Type
Xss | Ssrf
Complexity
Trivial
Reliability
Reliable
Target: OpenWFE (version not specified)
No auth needed
Prerequisites: Access to a vulnerable OpenWFE instance · Ability to craft malicious RMI URLs
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026