
Proof-of-concept exploit for an SQL injection vulnerability in Doubo ERP 1.0, enabling remote attackers to extract sensitive database information.
[Description]
Doubo ERP 1.0 has an SQL injection vulnerability due to a lack of filtering of user input, which can be remotely initiated by an attacker.
[Vulnerability Type]
SQL Injection
[Attack Type]
Remote
[Impact Information Disclosure]
true
[Has vendor confirmed]
true
[Discoverer]
[Reference]
[Affected Product Code Base]
Doubo ERP 1.0