Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-111627. PoCs published by ErrNick.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in QualDev eCommerce script, allowing an attacker to extract admin credentials via a crafted UNION-based SQL query. The PoC targets the 'id' parameter in the 'index.php' file to dump email and password hashes from the admin table.
Description
QualDev eCommerce script - SQL Injection
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in QualDev eCommerce script, allowing an attacker to extract admin credentials via a crafted UNION-based SQL query. The PoC targets the 'id' parameter in the 'index.php' file to dump email and password hashes from the admin table.