This is a technical writeup describing an SQL injection vulnerability in the 'aktkat' parameter of System Shop software. It provides details on the vulnerable parameter, example exploitation, and dorks for finding affected systems.
Classification
Writeup 80%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target:System Shop (latest version as of 2010)
No auth needed
Prerequisites:Access to a vulnerable System Shop instance