header-logo
Suggest Exploit
vendor:
Book Gallery
by:
Mr.P3rfekT
8,8
CVSS
HIGH
SQL Injection
89
CWE
Product Name: Book Gallery
Affected Version From: 1.0
Affected Version To: 1.0
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2020

Book Gallery (aboutbook.php) SQL Injection Vulnerability

A SQL injection vulnerability exists in the Book Gallery application, which allows an attacker to inject malicious SQL queries via the 'id' parameter in the 'aboutbook.php' script.

Mitigation:

Input validation should be used to prevent SQL injection attacks.
Source

Exploit-DB raw data:

# Title: Book Gallery (aboutbook.php) SQL Injection Vulnerability 
# Version: 1.0
# Author: Mr.P3rfekT
# Software Link:N/A
# Tested on Lunix
# CVE : N/A
 
############### Founded By Mr.P3rfekT ###############
 
Helllo Allz
 
 
# Exploit :
 
http://127.0.0.1/path/aboutbook.php?id=[] <== SQLi

 
sh done

 
####################################################################
 
MaiL :R4p@hotmail.com

Greeetz To : Sinaritx,HcJ,Mr.Black,Uzm4n,Nani17,Cyb3r-DeViL,www.v4-team.com,www.arab-exploit.com Cr3w,www.Barcelonasy.com & All Who Known Me

 
###############################################