This is a proof-of-concept for a SQL injection vulnerability in RedCat Media's index.php. The exploit demonstrates how to inject SQL queries via the contentId parameter to extract database information such as version details.
Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target:RedCat Media CMS (version unspecified)
No auth needed
Prerequisites:A vulnerable instance of RedCat Media CMS with exposed index.php?contentId= parameter