EIP-2026-113736

PRE-CVE

WordPress Plugin Facebook Survey 1.0 - SQL Injection

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-113736. PoCs published by Vulnerability Research Laboratory.

AI-analyzed exploit summary This is a technical writeup detailing a blind SQL injection vulnerability in the Wordpress Facebook Survey Pro plugin. The vulnerability is located in the 'id' parameter of the 'index.php' file within the timeline module, allowing remote attackers to execute SQL commands without authentication.

Description

WordPress Plugin Facebook Survey 1.0 - SQL Injection

Exploits (1)

exploitdb WRITEUP
by Vulnerability Research Laboratory · textwebappsphp
https://www.exploit-db.com/exploits/22853

This is a technical writeup detailing a blind SQL injection vulnerability in the Wordpress Facebook Survey Pro plugin. The vulnerability is located in the 'id' parameter of the 'index.php' file within the timeline module, allowing remote attackers to execute SQL commands without authentication.

Classification
Writeup 95%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: Wordpress Facebook Survey Pro Plugin
No auth needed
Prerequisites: Access to the vulnerable WordPress plugin endpoint
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026