EIP-2026-105853

PRE-CVE

CIMA DocuClass ECM - Multiple Vulnerabilities

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-105853. PoCs published by Karn Ganeshen.

AI-analyzed exploit summary This is a vulnerability writeup detailing multiple issues in CIMA DocuClass Enterprise Content Management, including SQL injection, access control flaws, and XSS. It provides PoC URLs and parameters but lacks executable exploit code.

Description

CIMA DocuClass ECM - Multiple Vulnerabilities

Exploits (1)

exploitdb WRITEUP
by Karn Ganeshen · textwebappsphp
https://www.exploit-db.com/exploits/40059

This is a vulnerability writeup detailing multiple issues in CIMA DocuClass Enterprise Content Management, including SQL injection, access control flaws, and XSS. It provides PoC URLs and parameters but lacks executable exploit code.

Classification
Writeup 90%
Attack Type
Sqli | Auth Bypass | Xss
Complexity
Moderate
Reliability
Theoretical
Target: CIMA DocuClass Enterprise Content Management (All versions)
No auth needed
Prerequisites: Network access to the target application
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026