EIP-2026-105711
PRE-CVECar Park Management System 1.0 - Authentication Bypass
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-105711. PoCs published by Tarun Sehgal.
AI-analyzed exploit summary This exploit demonstrates an authentication bypass vulnerability in Car Park Management System 1.0 via SQL injection. The crafted POST request manipulates the 'phone' and 'password' parameters to bypass authentication by injecting a tautology ('1'='1').
Description
Car Park Management System 1.0 - Authentication Bypass
Exploits (1)
exploitdb
WORKING POC
by Tarun Sehgal · textwebappsphp
https://www.exploit-db.com/exploits/48435
This exploit demonstrates an authentication bypass vulnerability in Car Park Management System 1.0 via SQL injection. The crafted POST request manipulates the 'phone' and 'password' parameters to bypass authentication by injecting a tautology ('1'='1').
Classification
Working Poc 95%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target:
Car Park Management System 1.0
No auth needed
Prerequisites:
Access to the login page of the Car Park Management System
devstral-2 · analyzed Feb 18, 2026
Full analysis →
Details
Status
pre_cve
Tracked Since
Feb 18, 2026