EIP-2026-116288
PRE-CVESpinworks Application Server 3.0 - Remote Denial of Service
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-116288. PoCs published by dr_insane.
AI-analyzed exploit summary The exploit demonstrates a remote denial of service vulnerability in Spinworks Application Server by sending a malformed request with a specific query parameter. The vulnerability is triggered by a request containing '?sid=.' which causes the server to crash.
Description
Spinworks Application Server 3.0 - Remote Denial of Service
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by dr_insane · textdoswindows
https://www.exploit-db.com/exploits/25219
The exploit demonstrates a remote denial of service vulnerability in Spinworks Application Server by sending a malformed request with a specific query parameter. The vulnerability is triggered by a request containing '?sid=.' which causes the server to crash.
Classification
Working Poc 90%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target:
Spinworks Application Server
No auth needed
Prerequisites:
Network access to the target server
MITRE ATT&CK
devstral-2 · analyzed Feb 18, 2026
Full analysis →
Details
Status
pre_cve
Tracked Since
Feb 18, 2026