This exploit demonstrates a SQL injection vulnerability in Invoice Template v1.0 for PHPRunner/ASPRunnerPro/ASPRunner.NET. The vulnerability allows an attacker to inject arbitrary SQL queries via the 'hash' parameter in the 'invoices_view.php' file.
Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target:Invoice Template v1.0 for PHPRunner/ASPRunnerPro/ASPRunner.NET