EIP-2026-107039

PRE-CVE

family connections 2.1.3 - Multiple Vulnerabilities

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-107039. PoCs published by Salvatore Fresta.

AI-analyzed exploit summary This is a detailed technical writeup describing multiple vulnerabilities in Family Connections CMS <= 2.1.3, including blind SQL injection, arbitrary file upload, and local file inclusion. It provides specific attack vectors, sample code, and analysis of the root causes.

Description

family connections 2.1.3 - Multiple Vulnerabilities

Exploits (1)

exploitdb WRITEUP VERIFIED
by Salvatore Fresta · textwebappsphp
https://www.exploit-db.com/exploits/10467

This is a detailed technical writeup describing multiple vulnerabilities in Family Connections CMS <= 2.1.3, including blind SQL injection, arbitrary file upload, and local file inclusion. It provides specific attack vectors, sample code, and analysis of the root causes.

Classification
Writeup 95%
Attack Type
Sqli | Info Leak | Auth Bypass
Complexity
Moderate
Reliability
Reliable
Target: Family Connections CMS <= 2.1.3
No auth needed
Prerequisites: Access to vulnerable Family Connections CMS instance
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026