EIP-2026-100291

PRE-CVE

E-Smart Cart - 'Members Login' Multiple SQL Injection Vulnerabilities

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-100291. PoCs published by milad_sa2007.

AI-analyzed exploit summary The exploit demonstrates an SQL injection vulnerability in E-SMART CART, allowing authentication bypass by injecting a simple SQL payload. The payload manipulates the SQL query to bypass authentication checks.

Description

E-Smart Cart - 'Members Login' Multiple SQL Injection Vulnerabilities

Exploits (1)

exploitdb WORKING POC VERIFIED
by milad_sa2007 · textwebappsasp
https://www.exploit-db.com/exploits/31059

The exploit demonstrates an SQL injection vulnerability in E-SMART CART, allowing authentication bypass by injecting a simple SQL payload. The payload manipulates the SQL query to bypass authentication checks.

Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: E-SMART CART
No auth needed
Prerequisites: Access to the login page of E-SMART CART
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026