################################################################################??########
( L2 B, `. s5 l2 o#
3 ^4 Y$ j( O; b8 J, }5 W' p0 O# Exploit Title : Net Ways Cms Sql Injection Vulnerability " g( x) T& ~& c
# 1 o8 o# ?9 y: w5 s& S
# Author : IrIsT.Ir $ b- g; P4 Z7 ] E7 z
# + T9 {0 ]& _, P. _ ?! N% ?
# Discovered By : Am!r % ` _+ |' k+ Y) M0 [+ g. O
# 3 v3 r. P) b) j% ^+ Q
# Home : http://IrIsT.Ir/forum * @, g, ?4 [1 n: E9 [
#
( l8 V3 ~$ B: v# ?1 ?9 M# Software Link : http://www.netways.com/ www.political-security.com# l+ }" g" f* Z; s5 f4 H- I) f9 H
#
( |- u {# L. {7 L. {8 \0 `# Security Risk : High $ S; L; i( ]7 _% E4 {$ g. Q
#
. w( K; f. @9 m* ~2 W3 h; Y# Version : All Version 6 c4 K! j/ d( y+ l W2 l, N# Q
# & ]1 Q5 A6 _! |- V( O' v' {9 }, P
# Tested on : GNU/Linux Ubuntu - Windows Server - win7 4 {, k6 T) _# c: E- n6 i3 K" e e
#
& a e7 [2 X' e/ f, a# Dork : intext:"Designed & developed by NetWays" $ ?( Q- C1 R: Y2 x U" p
#
2 U/ l1 z$ H4 B5 {2 ?* w2 `################################################################################??########
: b5 t% ?7 w& j5 l7 I7 q#
7 [" Z+ ~$ Z* p, B8 k# Expl0iTs :
1 I8 P; ^! |1 [0 x1 S) B/ _#
7 E# M- G' d' x5 K! G# http://target.com/news.php?id=[Sql]
6 Y% p/ D. I& g1 h" ], _$ i$ K#
; J( r1 V" d* g- d. n#
" H" [! Z: b( V& T$ Y! P# D3mo : ( o, s( j1 ~8 J1 a! Q. B S
# 4 _/ @7 Y$ F9 I' f0 A
# http://compagnieparento.com/news.php?id=7[Sql] + t6 W1 _9 }5 B* ?5 I
#
7 }+ h" Z3 S# C8 y1 w################################################################################??########
9 |* j: b5 ]" k3 b5 |#
/ y0 Z9 i1 q. v* p7 K" r$ P# Greats : B3HZ4D - nimaarek - Dead.Zone - C0dex - SpooferNinja - TaK.FaNaR - Nafsh - BestC0d3r H) l; v p( U$ t
#
& q. i: t* f/ P) `6 p5 @" {$ N- }# 0x0ptim0us - TaK.FaNaR - m3hdi - F@rid - Siamak.Black - H4x0r - dr.tofan - skote_vahshat - d3c0d3r 4 T D5 h9 L& X4 R! M2 o4 a4 S
# 2 L% q3 ?5 e; B) Q+ c
# Mr.Xpr & M.R.S.CO & Mr.Cicili & H-SK33PY & All Members In Www.IrIsT.Ir/forum
( z8 S1 |3 j8 r6 U: H3 o# ) y3 ^) M, o( K& ~
################################################################################??######## |