EIP-2026-107353
PRE-CVEGazelle CMS 1.0 - Update Statement SQL Injection
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-107353. PoCs published by hackme.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in Ananta Gazelle CMS 1.0, allowing an attacker to update the admin username and password by manipulating the POST data in the forgot.php page. The exploit leverages the lack of input validation to execute arbitrary SQL UPDATE statements.
Description
Gazelle CMS 1.0 - Update Statement SQL Injection
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in Ananta Gazelle CMS 1.0, allowing an attacker to update the admin username and password by manipulating the POST data in the forgot.php page. The exploit leverages the lack of input validation to execute arbitrary SQL UPDATE statements.