EIP-2026-104240

PRE-CVE

Engeman 6.x - SQL Injection

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-104240. PoCs published by crashbrz.

AI-analyzed exploit summary This writeup describes a SQL injection vulnerability in Engeman software (version 6.x.x and prior) where SQL code can be injected into the username textbox. The impact varies depending on the backend database (Firebird vs. SQL Server).

Description

Engeman 6.x - SQL Injection

Exploits (1)

exploitdb WRITEUP VERIFIED
by crashbrz · textwebappsmultiple
https://www.exploit-db.com/exploits/9819

This writeup describes a SQL injection vulnerability in Engeman software (version 6.x.x and prior) where SQL code can be injected into the username textbox. The impact varies depending on the backend database (Firebird vs. SQL Server).

Classification
Writeup 80%
Attack Type
Sqli
Complexity
Trivial
Reliability
Theoretical
Target: Engeman 6.x.x and prior
No auth needed
Prerequisites: Access to the username input field in Engeman software
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026