EIP-2026-105673

PRE-CVE

Cab Management System 1.0 - 'id' SQLi (Authenticated)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-105673. PoCs published by Alperen Ergel.

AI-analyzed exploit summary This exploit demonstrates a time-based SQL injection vulnerability in Cab Management System 1.0 via the 'id' parameter in an authenticated context. The payload uses SLEEP(10) to confirm the vulnerability through delayed response.

Description

Cab Management System 1.0 - 'id' SQLi (Authenticated)

Exploits (1)

exploitdb WORKING POC
by Alperen Ergel · textwebappsphp
https://www.exploit-db.com/exploits/50767

This exploit demonstrates a time-based SQL injection vulnerability in Cab Management System 1.0 via the 'id' parameter in an authenticated context. The payload uses SLEEP(10) to confirm the vulnerability through delayed response.

Classification
Working Poc 95%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: Cab Management System 1.0
Auth required
Prerequisites: Authenticated session (PHPSESSID cookie) · Access to the admin panel
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026