This exploit demonstrates a SQL injection vulnerability in SmallBiz eShop CMS. The PoC uses a UNION-based SQLi to extract database information, user credentials, and version details.
Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target:SmallBiz eShop CMS
No auth needed
Prerequisites:Target running SmallBiz eShop CMS with vulnerable parameter exposed