EIP-2026-112566
PRE-CVETBDev 2.0 - Remote File Inclusion / SQL Injection
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-112566. PoCs published by Inj3ct0r.
AI-analyzed exploit summary The provided text describes multiple input-validation vulnerabilities in TBDev, including remote file inclusion (RFI) and SQL injection. It references a specific exploit path but lacks functional exploit code, focusing instead on vulnerability details and potential impacts.
Description
TBDev 2.0 - Remote File Inclusion / SQL Injection
Exploits (1)
exploitdb
WRITEUP
VERIFIED
by Inj3ct0r · textwebappsphp
https://www.exploit-db.com/exploits/34607
The provided text describes multiple input-validation vulnerabilities in TBDev, including remote file inclusion (RFI) and SQL injection. It references a specific exploit path but lacks functional exploit code, focusing instead on vulnerability details and potential impacts.
Classification
Writeup 80%
Attack Type
Rce | Sqli
Complexity
Trivial
Reliability
Theoretical
Target:
TBDev 2.0
No auth needed
Prerequisites:
Access to the target web application · Knowledge of vulnerable parameters
devstral-2 · analyzed Feb 18, 2026
Full analysis →
Details
Status
pre_cve
Tracked Since
Feb 18, 2026