This is a writeup describing a SQL injection vulnerability in DmxReady Catalog Manager v1.2. The exploit details a vulnerable parameter (ItemID) in the inc_catalogmanager.asp file, but no actual exploit code or payload is provided.
Classification
Writeup 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Theoretical
Target:DmxReady Catalog Manager v1.2
No auth needed
Prerequisites:Access to the vulnerable URL parameter