EIP-2026-106098
PRE-CVECompany's Recruitment Management System 1.0 - 'Multiple' SQL Injection (Unauthenticated)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-106098. PoCs published by Yash Mahajan.
AI-analyzed exploit summary This exploit demonstrates an unauthenticated SQL injection vulnerability in Company's Recruitment Management System 1.0, allowing authentication bypass via crafted input in the 'username' parameter. It also identifies a vulnerable 'id' parameter for further SQLi exploitation using tools like sqlmap.
Description
Company's Recruitment Management System 1.0 - 'Multiple' SQL Injection (Unauthenticated)
Exploits (1)
This exploit demonstrates an unauthenticated SQL injection vulnerability in Company's Recruitment Management System 1.0, allowing authentication bypass via crafted input in the 'username' parameter. It also identifies a vulnerable 'id' parameter for further SQLi exploitation using tools like sqlmap.