EIP-2026-104044

PRE-CVE

OSU HTTP Server 3.10/3.11 - Multiple Information Disclosure Vulnerabilities

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-104044. PoCs published by Julio Cesar Fort.

AI-analyzed exploit summary The exploit describes multiple information-disclosure vulnerabilities in OSU HTTP server versions 3.11a and 3.10a. It demonstrates path disclosure via a non-existent file request and file/directory disclosure via a malformed URL path. No functional exploit code is provided, but technical details of the vulnerability are outlined.

Description

OSU HTTP Server 3.10/3.11 - Multiple Information Disclosure Vulnerabilities

Exploits (1)

exploitdb WRITEUP VERIFIED
by Julio Cesar Fort · textremotemultiple
https://www.exploit-db.com/exploits/28602

The exploit describes multiple information-disclosure vulnerabilities in OSU HTTP server versions 3.11a and 3.10a. It demonstrates path disclosure via a non-existent file request and file/directory disclosure via a malformed URL path. No functional exploit code is provided, but technical details of the vulnerability are outlined.

Classification
Writeup 90%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: OSU HTTP server 3.11a, 3.10a
No auth needed
Prerequisites: Network access to the target server
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026