SQLi Private Program 2025-06-01
Blind SQL Injection in Search Functionality
Severity: Critical | Status: Resolved
Summary
The search functionality was vulnerable to time-based blind SQL injection through improper input handling.
Proof of Concept
/search?q=test' AND SLEEP(5)-- -
Impact
Complete database compromise including user credentials.
Responsible Disclosure
This vulnerability was reported responsibly and fixed by the vendor before public disclosure.