Sd.net rim 4.7.3c idtyp sql injection Vulnerability / Exploit
/
/
/
Exploits / Vulnerability Discovered : 2019-11-05 |
Type : webapps |
Platform : aspx
This exploit / vulnerability Sd.net rim 4.7.3c idtyp sql injection is for educational purposes only and if it is used you will do on your own risk!
# SD.NET RIM before version 4.7.3c is vulnerable to a SQL-Injection vulnerability. To Exploit the vulnerability
# an attacker has to inject arbitrary SQL Statements in the following POST parameters:
# The attacker is then redirected with a 302 redirect to an URL /templates/?__=NEWBASE64 as GET request.
# By issuing the second request the arbitrary SQL-Statement gets executed.