EIP-2026-105814
PRE-CVECharity Management System CMS 1.0 - Multiple Vulnerabilities
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-105814. PoCs published by Davide Taraschi.
AI-analyzed exploit summary The exploit demonstrates multiple vulnerabilities in Charity Management System CMS 1.0, including unauthenticated reflected XSS, authenticated stored XSS, POST/GET authenticated SQL injection, unauthenticated SQL injection, and PHP code injection leading to RCE. The PoC includes detailed steps and payloads for each vulnerability.
Description
Charity Management System CMS 1.0 - Multiple Vulnerabilities
Exploits (1)
The exploit demonstrates multiple vulnerabilities in Charity Management System CMS 1.0, including unauthenticated reflected XSS, authenticated stored XSS, POST/GET authenticated SQL injection, unauthenticated SQL injection, and PHP code injection leading to RCE. The PoC includes detailed steps and payloads for each vulnerability.