EIP-2026-112367

PRE-CVE

SpamTitan Application 5.08x - SQL Injection

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-112367. PoCs published by Vulnerability-Lab.

AI-analyzed exploit summary The document describes a SQL injection vulnerability in SpamTitan Application v5.08x, specifically in the 'viewmail.php' file with parameters 'qid' and 'rid'. The vulnerability allows remote attackers to execute blind SQL injection via an 'order by' technique.

Description

SpamTitan Application 5.08x - SQL Injection

Exploits (1)

exploitdb WRITEUP
by Vulnerability-Lab · textwebappsphp
https://www.exploit-db.com/exploits/18413

The document describes a SQL injection vulnerability in SpamTitan Application v5.08x, specifically in the 'viewmail.php' file with parameters 'qid' and 'rid'. The vulnerability allows remote attackers to execute blind SQL injection via an 'order by' technique.

Classification
Writeup 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: SpamTitan Application v5.08x
No auth needed
Prerequisites: Network access to the target application
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026