EIP-2026-109392

PRE-CVE

Medical Clinic Website Script - SQL Injection

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-109392. PoCs published by Ihsan Sencan.

AI-analyzed exploit summary The exploit demonstrates an SQL injection and authentication bypass vulnerability in the Medical Clinic Website Script. It provides specific URLs and payloads to bypass authentication and inject SQL queries.

Description

Medical Clinic Website Script - SQL Injection

Exploits (1)

exploitdb WORKING POC
by Ihsan Sencan · textwebappsphp
https://www.exploit-db.com/exploits/41091

The exploit demonstrates an SQL injection and authentication bypass vulnerability in the Medical Clinic Website Script. It provides specific URLs and payloads to bypass authentication and inject SQL queries.

Classification
Working Poc 90%
Attack Type
Sqli | Auth Bypass
Complexity
Trivial
Reliability
Reliable
Target: Medical Clinic Website Script
No auth needed
Prerequisites: Access to the target web application
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026