EIP-2026-113397

PRE-CVE

Weyal CMS - Multiple SQL Injections

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-113397. PoCs published by XroGuE.

AI-analyzed exploit summary The exploit demonstrates SQL injection vulnerabilities in Weyal CMS by injecting malicious SQL queries via the 'id' and 'countryid' parameters. It retrieves database metadata such as version, user, and database name.

Description

Weyal CMS - Multiple SQL Injections

Exploits (1)

exploitdb WORKING POC VERIFIED
by XroGuE · textwebappsphp
https://www.exploit-db.com/exploits/38523

The exploit demonstrates SQL injection vulnerabilities in Weyal CMS by injecting malicious SQL queries via the 'id' and 'countryid' parameters. It retrieves database metadata such as version, user, and database name.

Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: Weyal CMS
No auth needed
Prerequisites: Access to the vulnerable Weyal CMS application
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026