EIP-2026-100252

PRE-CVE

DmxReady Bilboard 1.2 - SQL Injection

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-100252. PoCs published by Bellatrix.

AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in DmxReady Billboard v1.2 via the 'ItemID' parameter in the update.asp page. The attack vector is straightforward, requiring no authentication, and allows arbitrary SQL command execution.

Description

DmxReady Bilboard 1.2 - SQL Injection

Exploits (1)

exploitdb WORKING POC VERIFIED
by Bellatrix · textwebappsasp
https://www.exploit-db.com/exploits/17481

This exploit demonstrates a SQL injection vulnerability in DmxReady Billboard v1.2 via the 'ItemID' parameter in the update.asp page. The attack vector is straightforward, requiring no authentication, and allows arbitrary SQL command execution.

Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: DmxReady Billboard Manager v1.2
No auth needed
Prerequisites: Access to the target URL path · Vulnerable version of DmxReady Billboard Manager
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026