EIP-2026-109556

PRE-CVE

Monitoring System (Dashboard) 1.0 - 'uname' SQL Injection

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-109556. PoCs published by Richard Jones.

AI-analyzed exploit summary This exploit demonstrates a time-based blind SQL injection vulnerability in the 'uname' parameter of the Monitoring System (Dashboard) 1.0 login page. It provides sqlmap commands to exploit the vulnerability and extract database information.

Description

Monitoring System (Dashboard) 1.0 - 'uname' SQL Injection

Exploits (1)

exploitdb WORKING POC
by Richard Jones · textwebappsphp
https://www.exploit-db.com/exploits/49639

This exploit demonstrates a time-based blind SQL injection vulnerability in the 'uname' parameter of the Monitoring System (Dashboard) 1.0 login page. It provides sqlmap commands to exploit the vulnerability and extract database information.

Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: Monitoring System (Dashboard) 1.0
No auth needed
Prerequisites: Access to the login page of the target application · sqlmap tool
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026