EIP-2026-110569
PRE-CVEPG eLms Pro vDEC_2007_01 - Multiple Blind SQL Injections
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-110569. PoCs published by LiquidWorm.
AI-analyzed exploit summary The exploit demonstrates blind SQL injection vulnerabilities in PG eLMS Pro vDEC_2007_01 via the 'lang_code' GET parameter in index.php and login.php, and the 'login' POST parameter in login.php. The provided URLs include time-based SQL injection payloads to verify the vulnerability.
Description
PG eLms Pro vDEC_2007_01 - Multiple Blind SQL Injections
Exploits (1)
The exploit demonstrates blind SQL injection vulnerabilities in PG eLMS Pro vDEC_2007_01 via the 'lang_code' GET parameter in index.php and login.php, and the 'login' POST parameter in login.php. The provided URLs include time-based SQL injection payloads to verify the vulnerability.