EIP-2026-112398
PRE-CVESports Accelerator Suite 2.0 - 'news_id' SQL Injection
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-112398. PoCs published by LiquidWorm.
AI-analyzed exploit summary This advisory details a SQL injection vulnerability in Sports Accelerator Suite v2.0, where the 'news_id' parameter in 'show_news.php' fails to sanitize user input, allowing attackers to execute arbitrary SQL queries. The document includes proof of vulnerability, affected versions, and exploitation vectors.
Description
Sports Accelerator Suite 2.0 - 'news_id' SQL Injection
Exploits (1)
This advisory details a SQL injection vulnerability in Sports Accelerator Suite v2.0, where the 'news_id' parameter in 'show_news.php' fails to sanitize user input, allowing attackers to execute arbitrary SQL queries. The document includes proof of vulnerability, affected versions, and exploitation vectors.