################################################################################??########
6 A: i% _% r2 o4 n# o( t. A b# ' w" f% y: h% L3 ^# Y" }5 Z0 y' `
# Exploit Title : Net Ways Cms Sql Injection Vulnerability
7 f& B, @0 R: _( m#
( U3 X( q3 ]' {# Author : IrIsT.Ir 1 x! f- W9 l" q% e: H
# 3 v; C- O$ j4 b. M& w4 u
# Discovered By : Am!r " {5 {9 X7 `- n- c9 E" {9 [/ L6 ~
#
: Z. ]6 F& C& E; A# Home : http://IrIsT.Ir/forum
- `( G" U1 |, H8 p/ n#
4 L1 v" { }% K9 Z& x9 _# Software Link : http://www.netways.com/ www.political-security.com: u Z6 Q/ O0 d5 \3 Q
#
! p) r) |6 U6 _+ z/ E# Security Risk : High 1 j( D Q& {/ @8 v8 S
#
h) }6 G0 |1 A6 w6 u: J9 t# Version : All Version
4 ? t. L' K3 \+ a* b# 5 x7 I( @" K0 }/ }, X" z/ x
# Tested on : GNU/Linux Ubuntu - Windows Server - win7 2 e3 p7 _& @/ p, K+ \! ^) W7 l$ c
# 2 |" B8 ^- r' X" T7 m4 q
# Dork : intext:"Designed & developed by NetWays" + Z( g# h: `+ c5 [
# - ^! A7 x q# M! G7 a4 |: _+ |
################################################################################??######## / V9 r. B$ K) Z) Z& N
# & C$ A8 a2 i6 ^( Z! ]( E
# Expl0iTs :
+ r3 _+ u) R+ P8 x- |" q3 C/ ?# # T+ \6 C7 M4 L) ]. k$ w; O! C( j; }
# http://target.com/news.php?id=[Sql]
! M: \; f' r' @" r8 W c# ; }6 \6 g" [. V0 w( x/ G
#
) h) g8 U. s( [& B: e, J* T7 J# D3mo :
- } y6 W, F; |. t8 }# 4 M4 i8 Q3 _4 w* I8 \/ u0 | c C
# http://compagnieparento.com/news.php?id=7[Sql]
% S% s; ~5 y8 s* u8 _! Y# / Y; o; h# D8 E9 j1 d+ X
################################################################################??########
# n+ F8 t/ c. Z" h/ r3 l: n" ]# + f* O) v( G$ S
# Greats : B3HZ4D - nimaarek - Dead.Zone - C0dex - SpooferNinja - TaK.FaNaR - Nafsh - BestC0d3r
, K/ H ?0 u: K- ~$ l: P#
- _: A3 t% P" r3 U8 v% R# 0x0ptim0us - TaK.FaNaR - m3hdi - F@rid - Siamak.Black - H4x0r - dr.tofan - skote_vahshat - d3c0d3r / }5 a! `; F6 ^! B0 r4 R
#
% l9 m6 {; W* e# Mr.Xpr & M.R.S.CO & Mr.Cicili & H-SK33PY & All Members In Www.IrIsT.Ir/forum
: N" l. Z0 U7 C# h' r) ^/ I( Z# - b& T2 W8 ~# E6 J0 W
################################################################################??######## |