Blind SQL injection in contactus.php in Doctor Appointment System 1.0 allows an unauthenticated attacker to insert malicious SQL queries via firstname parameter.
Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view