The provided text describes an SQL injection vulnerability in e107 1.0.0, where insufficient sanitization of user-supplied data in the 'view' parameter allows SQLi attacks. No actual exploit code is present, only a description and example URL.
Classification
Writeup 80%
Attack Type
Sqli
Complexity
Trivial
Reliability
Theoretical
Target:e107 1.0.0
No auth needed
Prerequisites:Access to the vulnerable e107 instance