webCocoon's simpleCMS - SQL Injection
This exploit demonstrates a SQL injection vulnerability in webCocoon's simpleCMS, specifically in the 'show.php' file. The exploit uses a UNION-based SQLi to extract username and password from the 'user' table.