The exploit demonstrates SQL injection and XSS vulnerabilities in Foe CMS 1.6.5 via the 'ei' parameter in item.php. The PoC includes functional payloads for both vulnerabilities.
Classification
Working Poc 90%
Attack Type
Sqli | Xss
Complexity
Trivial
Reliability
Reliable
Target:Foe CMS 1.6.5
No auth needed
Prerequisites:Access to the target web application