EIP-2026-111201
PRE-CVEphpSFP Schedule Facebook Posts 1.5.6 - SQL Injection
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-111201. PoCs published by @u0x.
AI-analyzed exploit summary This exploit demonstrates an SQL injection vulnerability in phpSFP (Schedule Facebook Posts) versions 1.5.6 and 1.4.1. The flaw exists in the 'remember me' functionality, where the 'login' cookie is improperly sanitized, allowing error-based SQL injection to extract user credentials.
Description
phpSFP Schedule Facebook Posts 1.5.6 - SQL Injection
Exploits (1)
This exploit demonstrates an SQL injection vulnerability in phpSFP (Schedule Facebook Posts) versions 1.5.6 and 1.4.1. The flaw exists in the 'remember me' functionality, where the 'login' cookie is improperly sanitized, allowing error-based SQL injection to extract user credentials.