The exploit demonstrates an SQL injection vulnerability in Willoughby TriO by injecting malicious SQL queries via the 'id' parameter in browse.php. It allows unauthorized access to sensitive data such as emails and passwords from the Webusers table.
Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target:Willoughby TriO up to and including version 2.1