The exploit demonstrates a SQL injection vulnerability in WhizBiz Business Directory CMS v1.9 via the 'plainkey' parameter in the results page. The PoC provides a direct URL for exploitation, indicating a functional and straightforward SQLi attack vector.
Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target:WhizBiz Business Directory CMS v1.9
No auth needed
Prerequisites:Access to the target web application