EIP-2026-106813

PRE-CVE

elaniin CMS 1.0 - Authentication Bypass

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-106813. PoCs published by riamloo.

AI-analyzed exploit summary This exploit demonstrates an authentication bypass vulnerability in elaniin CMS 1.0 via SQL injection in the login form. The payload manipulates the 'email' and 'password' parameters to bypass authentication by injecting a tautology ('=''or'').

Description

elaniin CMS 1.0 - Authentication Bypass

Exploits (1)

exploitdb WORKING POC VERIFIED
by riamloo · textwebappsphp
https://www.exploit-db.com/exploits/47858

This exploit demonstrates an authentication bypass vulnerability in elaniin CMS 1.0 via SQL injection in the login form. The payload manipulates the 'email' and 'password' parameters to bypass authentication by injecting a tautology ('=''or'').

Classification
Working Poc 95%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: elaniin CMS 1.0
No auth needed
Prerequisites: Access to the login page of elaniin CMS
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026