EIP-2026-107784

PRE-CVE

ILIAS Lms 3.9.9/3.10.7 - Arbitrary Edition / Information Disclosure

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-107784. PoCs published by YEnH4ckEr.

AI-analyzed exploit summary This is a detailed technical writeup describing multiple arbitrary information disclosure and edition vulnerabilities in ILIAS LMS versions 3.10.7 and 3.9.9. It includes specific exploit paths, affected parameters, and proof-of-concept URLs but does not contain functional exploit code.

Description

ILIAS Lms 3.9.9/3.10.7 - Arbitrary Edition / Information Disclosure

Exploits (1)

exploitdb WRITEUP VERIFIED
by YEnH4ckEr · textwebappsphp
https://www.exploit-db.com/exploits/9151

This is a detailed technical writeup describing multiple arbitrary information disclosure and edition vulnerabilities in ILIAS LMS versions 3.10.7 and 3.9.9. It includes specific exploit paths, affected parameters, and proof-of-concept URLs but does not contain functional exploit code.

Classification
Writeup 90%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: ILIAS LMS <= 3.10.7/3.9.9
Auth required
Prerequisites: Registered user account on the target ILIAS LMS instance
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026