EIP-2026-109905
PRE-CVENew5starRating 1.0 - '/admin/control_panel_sample.php' SQL Injection
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-109905. PoCs published by zer0day.
AI-analyzed exploit summary The exploit demonstrates an SQL injection vulnerability in New5starRating 1.0 by injecting a malicious payload into the username field, bypassing authentication. The payload 'admin 'or' 1=1' manipulates the SQL query to return all records, effectively bypassing login restrictions.
Description
New5starRating 1.0 - '/admin/control_panel_sample.php' SQL Injection
Exploits (1)
The exploit demonstrates an SQL injection vulnerability in New5starRating 1.0 by injecting a malicious payload into the username field, bypassing authentication. The payload 'admin 'or' 1=1' manipulates the SQL query to return all records, effectively bypassing login restrictions.