################################################################################??######## & R8 J& u# {: a5 l, ~' v
#
6 F' x- Q: Z2 L7 D/ g9 M# Exploit Title : Net Ways Cms Sql Injection Vulnerability
; M1 A2 h7 R( ^4 n- u# $ y0 I1 G3 P! h
# Author : IrIsT.Ir - B# j0 f. y9 E: b. _
# , [& i* T+ M, y" L5 m& x1 i
# Discovered By : Am!r
& a2 }: b7 ? Z# 7 u/ o* I2 p( a- Q
# Home : http://IrIsT.Ir/forum ! G% ~. ?3 ~' N# g# ^6 z
# 5 E9 k" w9 G I* T% M
# Software Link : http://www.netways.com/ www.political-security.com
; ?! F4 I* s# F/ `# L W3 N2 y8 r, a# 2 Q9 o! z4 Z/ ~' w
# Security Risk : High
. b! s% f" x7 i3 T) b7 x#
6 J, T$ M% \% [, m J4 v) |# Version : All Version
9 }8 V- T: D( d# K#
0 s. p6 z! d% ~6 W5 ?9 `# Tested on : GNU/Linux Ubuntu - Windows Server - win7 # J1 k5 u5 j: A: X
# ' N6 B- j/ x% h. ^, l F% f. d7 e1 O
# Dork : intext:"Designed & developed by NetWays" / `6 s% J' P6 x4 O+ I# E
# - |0 H: Z' y, {- O3 ]& k& R' b
################################################################################??########
- F3 a1 J1 x: Q8 p& \# 7 y& E6 H6 \. ~! s: i9 u; S& p
# Expl0iTs : V; ?) T/ P0 q$ k |
#
+ l9 c6 ^7 v6 p& @) v# http://target.com/news.php?id=[Sql] 6 P3 _$ T* q) m
# ; s/ R5 ~- i- }+ `) r' `; R7 _
# ( v! a8 d8 m" ]8 i# b! E' g
# D3mo :
! f5 Q, D- S) D8 r- t# K# * g, b, h6 L0 e- Q
# http://compagnieparento.com/news.php?id=7[Sql] ( \$ q6 ]5 b0 p; D7 w0 B; H6 z" b
#
/ m$ S5 e3 }& @0 W. |################################################################################??########
* ~8 Z8 E7 O: Z$ z6 j5 v- B6 N# 3 O$ @( g b; I2 U3 T& ?
# Greats : B3HZ4D - nimaarek - Dead.Zone - C0dex - SpooferNinja - TaK.FaNaR - Nafsh - BestC0d3r
6 u3 f" C6 U& R$ I4 c#
: T+ l7 Z+ L+ v7 {& |2 c# 0x0ptim0us - TaK.FaNaR - m3hdi - F@rid - Siamak.Black - H4x0r - dr.tofan - skote_vahshat - d3c0d3r
4 j3 v9 U# V# d$ C {9 d' l- U ]6 i#
2 N4 ~- f; [1 \6 G* V* k% i# @# Mr.Xpr & M.R.S.CO & Mr.Cicili & H-SK33PY & All Members In Www.IrIsT.Ir/forum
0 h& f" J3 M) U8 T% A#
; C& }. d; t: g c, I' n################################################################################??######## |