The provided content describes a SQL injection vulnerability in FS Lynda Clone, specifically targeting the 'category' parameter via a POST request. It includes a proof-of-concept payload demonstrating a boolean-based blind SQLi attack but lacks functional exploit code.
Classification
Writeup 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target:FS Lynda Clone (version as of 23 October 17)
No auth needed
Prerequisites:Access to the target application's tutorial endpoint