################################################################################??######## - D- t! G0 t3 J. b+ m0 n
# 8 i6 d! |3 L' x: R- }. \6 {1 a, @
# Exploit Title : Net Ways Cms Sql Injection Vulnerability
# @; ^$ ^$ g5 {( ?* L' H# 1 b2 R! S8 K& b. t, l# e! L9 h
# Author : IrIsT.Ir ) [' {4 x2 _' r) Q: E( u, _1 E5 j
#
, A& ~& N5 @! f) m* X0 @# Discovered By : Am!r
: p" s$ b4 x1 F0 ?: x3 A* U# ; u4 N$ V. M; t8 Y4 Y! ^4 m, n
# Home : http://IrIsT.Ir/forum
& v" m" s) |4 {! T2 T#
& m+ q$ G! E: ^. u8 p: j# Software Link : http://www.netways.com/ www.political-security.com
% b5 e/ w4 u1 U% U# " v0 Y, S8 @, _9 D7 a- G6 g
# Security Risk : High
' T* }, s( }/ \( q$ k5 S5 P- R- B$ J% a g# % d( ]) }6 e5 H1 I P$ Q7 d5 I: u& i
# Version : All Version * [6 N" j4 o: }3 R: m1 e# {1 N
#
, N- }( K% y, u- ^6 E# Y# Tested on : GNU/Linux Ubuntu - Windows Server - win7
! n( s! A4 W. D7 } B L6 f1 r7 i# . t5 |$ J' i, q1 l- w" q) U; v
# Dork : intext:"Designed & developed by NetWays" 4 @! \; @; V @( U) e' W
# 8 d. e) I6 I0 R- @! L/ E3 Z3 C3 G
################################################################################??########
6 V4 M% c& A1 @+ E% B#
- i+ `2 x0 \; f3 @7 e9 O! U# Expl0iTs : + c# y( i; R2 d+ s6 D
#
( c+ X) L1 j! ~3 C( v0 @# http://target.com/news.php?id=[Sql]
8 ^- m9 D$ W W1 Z7 ^1 H; l# " J; \' p/ Q5 u
# 7 w+ Z5 B" h4 ?5 {% u9 l7 m) T9 x
# D3mo :
4 W' ^6 R) {# R: c#
. f" L0 {4 o0 O, c# http://compagnieparento.com/news.php?id=7[Sql] 1 D, Z0 n4 W$ ^
# 4 T0 j+ c' ]' w( S' D
################################################################################??######## % [3 k8 G4 |7 E" f* O. l R: x4 e
# ; _& Q1 ?$ I! |; }
# Greats : B3HZ4D - nimaarek - Dead.Zone - C0dex - SpooferNinja - TaK.FaNaR - Nafsh - BestC0d3r
6 r* T" V4 \- Y* p- G' r/ A#
) q( T) ?* b- C1 M8 ]2 d5 k# 0x0ptim0us - TaK.FaNaR - m3hdi - F@rid - Siamak.Black - H4x0r - dr.tofan - skote_vahshat - d3c0d3r
1 e1 w" w F, K- A# B& b* K/ X- d" H5 ?2 V' Q& \8 u
# Mr.Xpr & M.R.S.CO & Mr.Cicili & H-SK33PY & All Members In Www.IrIsT.Ir/forum
" ]1 K L. ]/ e#
6 g) x4 K, {$ i+ t) U2 u0 u################################################################################??######## |