Exploitation Summary
EIP tracks 1 public exploit for CVE-2021-34166. PoCs published by Viren Saroha.
AI-analyzed exploit summary This exploit demonstrates an SQL injection vulnerability in the login mechanism of Simple Food Website 1.0, allowing authentication bypass by injecting a tautology into the username field. The provided request shows the exact payload used to bypass authentication.
Description
A SQL INJECTION vulnerability in Sourcecodester Simple Food Website 1.0 allows a remote attacker to Bypass Authentication and become Admin.
Exploits (1)
This exploit demonstrates an SQL injection vulnerability in the login mechanism of Simple Food Website 1.0, allowing authentication bypass by injecting a tautology into the username field. The provided request shows the exact payload used to bypass authentication.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H