EIP-2026-105711

PRE-CVE

Car Park Management System 1.0 - Authentication Bypass

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-105711. PoCs published by Tarun Sehgal.

AI-analyzed exploit summary This exploit demonstrates an authentication bypass vulnerability in Car Park Management System 1.0 via SQL injection. The crafted POST request manipulates the 'phone' and 'password' parameters to bypass authentication by injecting a tautology ('1'='1').

Description

Car Park Management System 1.0 - Authentication Bypass

Exploits (1)

exploitdb WORKING POC
by Tarun Sehgal · textwebappsphp
https://www.exploit-db.com/exploits/48435

This exploit demonstrates an authentication bypass vulnerability in Car Park Management System 1.0 via SQL injection. The crafted POST request manipulates the 'phone' and 'password' parameters to bypass authentication by injecting a tautology ('1'='1').

Classification
Working Poc 95%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: Car Park Management System 1.0
No auth needed
Prerequisites: Access to the login page of the Car Park Management System
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026