Binn SBuilder (nid) Remote Blind Sql Injection Vulnerabily
Binn SBuilder is vulnerable to a Blind Sql Injection vulnerability. This vulnerability can be exploited by sending a maliciously crafted HTTP request to the vulnerable application. An attacker can use this vulnerability to extract sensitive information from the database, such as usernames and passwords. The vulnerability exists due to insufficient sanitization of user-supplied input in the 'nid' parameter of the 'full_text.php' script. An attacker can exploit this vulnerability by sending a specially crafted HTTP request containing malicious SQL code to the vulnerable application. The malicious SQL code can be used to extract sensitive information from the database, such as usernames and passwords.