EIP-2026-100360
PRE-CVEIatek Knowledge Base - 'content_by_cat.asp' SQL Injection
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-100360. PoCs published by xcorpitx.
AI-analyzed exploit summary The exploit demonstrates an SQL injection vulnerability in Iatek Knowledge Base by injecting malicious SQL queries into the 'contentid' and 'catid' parameters. The payloads extract user credentials and access levels from the 'users' table.
Description
Iatek Knowledge Base - 'content_by_cat.asp' SQL Injection
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by xcorpitx · textwebappsasp
https://www.exploit-db.com/exploits/31463
The exploit demonstrates an SQL injection vulnerability in Iatek Knowledge Base by injecting malicious SQL queries into the 'contentid' and 'catid' parameters. The payloads extract user credentials and access levels from the 'users' table.
Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target:
Iatek Knowledge Base
No auth needed
Prerequisites:
Access to the vulnerable web application
devstral-2 · analyzed Feb 18, 2026
Full analysis →
Details
Status
pre_cve
Tracked Since
Feb 18, 2026