EIP-2026-112075

PRE-CVE

Simple Client Management System 1.0 - SQLi (Authentication Bypass)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-112075. PoCs published by Sentinal920.

AI-analyzed exploit summary The exploit demonstrates an SQL injection vulnerability in the 'password' parameter of the Simple Client Management System 1.0 login page, allowing authentication bypass by injecting a crafted payload. The provided HTTP request shows the exact payload and headers required to exploit the vulnerability.

Description

Simple Client Management System 1.0 - SQLi (Authentication Bypass)

Exploits (1)

exploitdb WORKING POC
by Sentinal920 · textwebappsphp
https://www.exploit-db.com/exploits/50497

The exploit demonstrates an SQL injection vulnerability in the 'password' parameter of the Simple Client Management System 1.0 login page, allowing authentication bypass by injecting a crafted payload. The provided HTTP request shows the exact payload and headers required to exploit the vulnerability.

Classification
Working Poc 95%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: Simple Client Management System 1.0
No auth needed
Prerequisites: Access to the login page of the target application
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026