EIP-2026-111490
PRE-CVEPreProject Multi-Vendor Shopping Malls - 'products.php' SQL Injection
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-111490. PoCs published by CoBRa_21.
AI-analyzed exploit summary The provided text describes an SQL injection vulnerability in Pre Multi-Vendor Shopping Malls, where insufficient sanitization of user-supplied data in the 'sid' parameter allows SQLi attacks. The example URL demonstrates the vulnerable endpoint but lacks executable exploit code.
Description
PreProject Multi-Vendor Shopping Malls - 'products.php' SQL Injection
Exploits (1)
The provided text describes an SQL injection vulnerability in Pre Multi-Vendor Shopping Malls, where insufficient sanitization of user-supplied data in the 'sid' parameter allows SQLi attacks. The example URL demonstrates the vulnerable endpoint but lacks executable exploit code.