EIP-2026-108201

PRE-CVE

Joomla! Component altas 1.0 - Multiple SQL Injections

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-108201. PoCs published by Houssamix.

AI-analyzed exploit summary This Perl script exploits a SQL injection vulnerability in the Joomla 'altas' component (v1.0) by injecting malicious SQL queries via the 'mes' and 'ano' parameters to extract admin usernames and password hashes.

Description

Joomla! Component altas 1.0 - Multiple SQL Injections

Exploits (1)

exploitdb WORKING POC VERIFIED
by Houssamix · perlwebappsphp
https://www.exploit-db.com/exploits/6002

This Perl script exploits a SQL injection vulnerability in the Joomla 'altas' component (v1.0) by injecting malicious SQL queries via the 'mes' and 'ano' parameters to extract admin usernames and password hashes.

Classification
Working Poc 95%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: Joomla 'altas' component v1.0
No auth needed
Prerequisites: Target running Joomla with the vulnerable 'altas' component · Network access to the target
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026