EIP-2026-108498

PRE-CVE

Joomla! Component com_propertylab - 'id' SQL Injection

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-108498. PoCs published by the_cyber_nuxbie.

AI-analyzed exploit summary The exploit demonstrates a SQL injection vulnerability in the 'com_propertylab' component for Joomla! by injecting malicious input into the 'id' parameter of the URL. This allows an attacker to manipulate the SQL query and potentially access or modify data in the underlying database.

Description

Joomla! Component com_propertylab - 'id' SQL Injection

Exploits (1)

exploitdb WORKING POC VERIFIED
by the_cyber_nuxbie · textwebappsphp
https://www.exploit-db.com/exploits/36639

The exploit demonstrates a SQL injection vulnerability in the 'com_propertylab' component for Joomla! by injecting malicious input into the 'id' parameter of the URL. This allows an attacker to manipulate the SQL query and potentially access or modify data in the underlying database.

Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: Joomla! with com_propertylab component
No auth needed
Prerequisites: Joomla! installation with vulnerable 'com_propertylab' component
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026