This exploit demonstrates a SQL injection vulnerability in the 'showpost.php' script of FourTwoSevenBB 2.3.2. The vulnerability allows an attacker to extract sensitive information such as usernames and passwords from the database via a crafted 'post' parameter.
Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target:FourTwoSevenBB 2.3.2
No auth needed
Prerequisites:Access to the vulnerable 'showpost.php' script