The exploit demonstrates a SQL injection vulnerability in eBay like Auction PHP Script 2.2 via the 'id' parameter in item.php. The PoC provides a direct URL-based injection vector, allowing an attacker to execute arbitrary SQL commands.
Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target:eBay like Auction PHP Script 2.2
No auth needed
Prerequisites:Access to the vulnerable web application