EIP-2026-112081
PRE-CVESimple College Website 1.0 - 'username' SQL Injection / Remote Code Execution
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-112081. PoCs published by yunaranyancat.
AI-analyzed exploit summary This exploit demonstrates SQL injection to bypass admin authentication and then leverages a file upload vulnerability to achieve remote code execution by uploading a PHP reverse shell. The script automates the process of logging in, uploading the shell, and triggering its execution.
Description
Simple College Website 1.0 - 'username' SQL Injection / Remote Code Execution
Exploits (1)
This exploit demonstrates SQL injection to bypass admin authentication and then leverages a file upload vulnerability to achieve remote code execution by uploading a PHP reverse shell. The script automates the process of logging in, uploading the shell, and triggering its execution.