This exploit demonstrates a chained SQL injection vulnerability in EZ-Shop 1.02, where user input is insufficiently sanitized, allowing an attacker to extract database information such as MySQL version and admin credentials.
Classification
Working Poc 95%
Attack Type
Sqli
Complexity
Moderate
Reliability
Reliable
Target:EZ-Shop 1.02
No auth needed
Prerequisites:Access to the vulnerable EZ-Shop application