This exploit demonstrates an SQL injection vulnerability in PHPMySpace Gold 8.0 by injecting a UNION-based query to extract database information. The PoC leverages unsanitized input in the 'gid' parameter to manipulate SQL queries.
Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target:PHPMySpace Gold 8.0
No auth needed
Prerequisites:Access to the vulnerable endpoint · Network connectivity to the target