Tags: sqli web webex

Rating:

## BCACTF 2.0
-------------------------------------------
## Description
I heard a new movie was coming out... apparently it's supposed to be the SeQueL to "Gerard's First Dance"? Is there any chance you can help me find the flyer?

http://web.bcactf.com:49160/
## Hints

Hint 1 of 1

Are the inputs sanitized?

### 100 points

first in the description the word "SeQueL" has "SQL" highlighted so it's an sqli challenge :P

since it's sqli i tried typing
sql
' OR '1'='1