EIP-2026-106192
PRE-CVECourse Registration Management System - Cross-Site Scripting / SQL Injection
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-106192. PoCs published by Omar Kurt.
AI-analyzed exploit summary The exploit demonstrates SQL injection vulnerabilities in Course Registration Management System 2.2.1 via multiple endpoints (e.g., add_user.php, login.php, auth.php). It includes payloads for time-based SQLi using SLEEP(25), confirming the vulnerability's exploitability.
Description
Course Registration Management System - Cross-Site Scripting / SQL Injection
Exploits (1)
The exploit demonstrates SQL injection vulnerabilities in Course Registration Management System 2.2.1 via multiple endpoints (e.g., add_user.php, login.php, auth.php). It includes payloads for time-based SQLi using SLEEP(25), confirming the vulnerability's exploitability.