Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-112937. PoCs published by Gjoko Krstic.
AI-analyzed exploit summary The provided text describes an SQL injection vulnerability in Ushahidi 2.0.1, where unsanitized user input in the 'range' parameter can be exploited to manipulate SQL queries. No actual exploit code is present, only a description and a sample URL.
Description
Ushahidi 2.0.1 - 'range' SQL Injection
Exploits (1)
exploitdb
WRITEUP
VERIFIED
by Gjoko Krstic · textwebappsphp
https://www.exploit-db.com/exploits/35819
The provided text describes an SQL injection vulnerability in Ushahidi 2.0.1, where unsanitized user input in the 'range' parameter can be exploited to manipulate SQL queries. No actual exploit code is present, only a description and a sample URL.
Classification
Writeup 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Theoretical
Target:
Ushahidi 2.0.1
No auth needed
Prerequisites:
Access to the vulnerable endpoint
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026
Full analysis →
Details
Status
pre_cve
Tracked Since
Feb 18, 2026