This exploit demonstrates a remote SQL injection vulnerability in HlstatsX via the 'award' parameter in the 'dailyawardinfo' mode. The exploit provides a direct URL to trigger the vulnerability, indicating it is functional.
Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target:HlstatsX
No auth needed
Prerequisites:Access to the vulnerable HlstatsX web interface