EIP-2026-111387
PRE-CVEPoint Market System 3.1x vBulletin plugin - SQL Injection
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-111387. PoCs published by Net.Edit0r.
AI-analyzed exploit summary This is a writeup describing a SQL injection vulnerability in the Point Market System 3.1x vBulletin plugin. The vulnerability is located in the 'market.php' file and can be exploited via the 'id' parameter.
Description
Point Market System 3.1x vBulletin plugin - SQL Injection
Exploits (1)
exploitdb
WRITEUP
by Net.Edit0r · textwebappsphp
https://www.exploit-db.com/exploits/17141
This is a writeup describing a SQL injection vulnerability in the Point Market System 3.1x vBulletin plugin. The vulnerability is located in the 'market.php' file and can be exploited via the 'id' parameter.
Classification
Writeup 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target:
Point Market System 3.1x vBulletin plugin
Auth required
Prerequisites:
User registration on the target site
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026
Full analysis →
Details
Status
pre_cve
Tracked Since
Feb 18, 2026