IdeaCMS up to 1.7 is vulnerable to SQL injection via the field parameter in article and product query interfaces. This template uses a time-based payload to safely detect the vulnerability.
Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view