The exploit demonstrates an SQL injection vulnerability in PHP-Nuke by injecting a UNION-based query to extract data from the database. The provided URLs show how an attacker can bypass input filtering to retrieve sensitive information such as passwords from the 'nuke_authors' table.
Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target:PHP-Nuke 7.8
No auth needed
Prerequisites:Access to a vulnerable PHP-Nuke installation · Knowledge of the database schema