Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-105486. PoCs published by John Leitch.
AI-analyzed exploit summary This exploit demonstrates a Local File Inclusion (LFI) vulnerability in Bit Weaver 2.7 by manipulating the 'style' parameter in the rankings.php file to include arbitrary files, such as system.ini. The PoC is straightforward and leverages path traversal techniques.
Description
Bit Weaver 2.7 - Local File Inclusion
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by John Leitch · textwebappsphp
https://www.exploit-db.com/exploits/14166
This exploit demonstrates a Local File Inclusion (LFI) vulnerability in Bit Weaver 2.7 by manipulating the 'style' parameter in the rankings.php file to include arbitrary files, such as system.ini. The PoC is straightforward and leverages path traversal techniques.
Classification
Working Poc 90%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target:
Bit Weaver 2.7
No auth needed
Prerequisites:
Access to the target server's web interface
devstral-2 · analyzed Feb 16, 2026
Full analysis →
Details
Status
pre_cve
Tracked Since
Feb 18, 2026