This Python script exploits a blind SQL injection vulnerability in UserSpice <= 4.3 by targeting the 'removePermission' parameter. It uses time-based techniques to extract the MySQL root password hash character by character.
Classification
Working Poc 95%
Attack Type
Sqli
Complexity
Moderate
Reliability
Reliable
Target:UserSpice <= 4.3
Auth required
Prerequisites:Valid admin credentials · Access to the login and admin pages