EIP-2026-113393

PRE-CVE

WespaJuris 3.0 - Multiple Vulnerabilities

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-113393. PoCs published by WhiteCollarGroup.

AI-analyzed exploit summary This exploit automates the process of uploading a webshell to WespaJuris <= 3.0 by leveraging SQL injection for authentication bypass and manipulating file upload restrictions. It chains multiple steps to achieve arbitrary file upload.

Description

WespaJuris 3.0 - Multiple Vulnerabilities

Exploits (1)

exploitdb WORKING POC
by WhiteCollarGroup · phpwebappsphp
https://www.exploit-db.com/exploits/20342

This exploit automates the process of uploading a webshell to WespaJuris <= 3.0 by leveraging SQL injection for authentication bypass and manipulating file upload restrictions. It chains multiple steps to achieve arbitrary file upload.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: WespaJuris <= 3.0
No auth needed
Prerequisites: Target must be running WespaJuris <= 3.0 · PHP cURL extension must be enabled
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026