EIP-2026-100235

PRE-CVE

CyberStrong EShop 4.2 - '10browse.asp' SQL Injection

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-100235. PoCs published by aresu@bosen.net.

AI-analyzed exploit summary The entry describes an SQL injection vulnerability in CyberStrong eShop's '10browse.asp' script, where malicious input to the 'ProductCode' parameter can manipulate SQL queries. It highlights potential authentication information theft but lacks exploit code or technical depth.

Description

CyberStrong EShop 4.2 - '10browse.asp' SQL Injection

Exploits (1)

exploitdb WRITEUP VERIFIED
by aresu@bosen.net · textwebappsasp
https://www.exploit-db.com/exploits/25925

The entry describes an SQL injection vulnerability in CyberStrong eShop's '10browse.asp' script, where malicious input to the 'ProductCode' parameter can manipulate SQL queries. It highlights potential authentication information theft but lacks exploit code or technical depth.

Classification
Writeup 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Theoretical
Target: CyberStrong eShop (version unspecified)
No auth needed
Prerequisites: Access to the vulnerable '10browse.asp' endpoint
mistral-large-3 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026