################################################################################??########
! y+ k; V6 B9 W9 `#
6 y/ X; n2 V2 f8 k) E( s& L# Exploit Title : Net Ways Cms Sql Injection Vulnerability ! ~ ?2 B& r# C7 M" P" p. `
# & f+ k2 A5 d9 G
# Author : IrIsT.Ir 0 L! u/ [0 E' i% |2 U, K$ }
#
* c) J' C8 k1 n' O# Discovered By : Am!r 8 g+ b4 K1 [& ?( y* Z) i
# + ]! B7 N7 p+ C% j; R7 ]/ ^
# Home : http://IrIsT.Ir/forum 2 s: u/ M' h* h6 ^: f/ M
#
; Q' l$ b+ ~9 }8 g8 x: v# Software Link : http://www.netways.com/ www.political-security.com: N1 B, ]- _' ], {$ ~; X! i1 m
#
6 ^% C$ A" }1 U7 n, O8 @3 P" l# Security Risk : High
! j9 Y) g0 O0 T2 ?#
4 V- n1 W. |6 a4 r' [# Version : All Version
1 ]* \. ^! `. V, {5 l1 k# % w4 [& |# W) x* F: {9 G
# Tested on : GNU/Linux Ubuntu - Windows Server - win7 % B' l' l+ t" @ f, v9 F: e& b
# 3 z( r: W2 I' p2 y; K y/ s
# Dork : intext:"Designed & developed by NetWays"
% u* V* n% n; S8 U5 p& `#
0 z T5 t8 t3 |+ o# F7 U################################################################################??######## & i& P0 o0 I( @$ j+ T
#
7 b2 q: t0 U# A- l' K" B* c# Expl0iTs : ) Z4 z3 l. `/ M$ r; }+ _
# ! O4 f# P/ @. w. W7 p
# http://target.com/news.php?id=[Sql]
! U; p) U4 G$ _# , V9 t) {7 |1 }( S( U! b& [
# - k+ P+ ^: L o S$ H" I# o
# D3mo : 8 U3 r$ g8 _% m2 B7 Z2 d4 E
# 4 J, h- o" B/ J. ]0 @
# http://compagnieparento.com/news.php?id=7[Sql] ' b3 ]- v* U' y
# 7 s6 H4 i# |6 D4 B6 z$ ?1 l
################################################################################??######## ! P- v- W+ d4 q% W, _
#
* U9 ~0 k+ U# }7 G8 b# Greats : B3HZ4D - nimaarek - Dead.Zone - C0dex - SpooferNinja - TaK.FaNaR - Nafsh - BestC0d3r ' N' }( d: n: W7 {7 g) {: E
# 4 S$ A# L! S0 @" r: o# r
# 0x0ptim0us - TaK.FaNaR - m3hdi - F@rid - Siamak.Black - H4x0r - dr.tofan - skote_vahshat - d3c0d3r
. d) A+ w" A- `, g3 U* }; Y# - t( H$ t7 B# ~: D
# Mr.Xpr & M.R.S.CO & Mr.Cicili & H-SK33PY & All Members In Www.IrIsT.Ir/forum ' @. K% ~ y. Y; V7 X7 R
# - S- Z6 M! b0 \2 S! z
################################################################################??######## |