Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-106397. PoCs published by Ihsan Sencan.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in De-Tutor 1.0, where the 'id' parameter in 'blog-details.php' is directly interpolated into a SQL query without sanitization. The PoC includes a crafted payload that extracts database schema information via error-based SQLi techniques.
Description
De-Tutor 1.0 - SQL Injection
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in De-Tutor 1.0, where the 'id' parameter in 'blog-details.php' is directly interpolated into a SQL query without sanitization. The PoC includes a crafted payload that extracts database schema information via error-based SQLi techniques.