The exploit demonstrates an SQL injection vulnerability in Smart Chat - PHP Script 1.0.0, allowing authentication bypass and arbitrary SQL command execution via crafted input in the admin login and smiles page.
Classification
Working Poc 95%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target:Smart Chat - PHP Script 1.0.0
No auth needed
Prerequisites:Access to the admin.php or index.php?p=smiles endpoint