################################################################################??########
+ W$ J9 f. I& x7 V0 ^# ( N9 T$ p6 Z# e- |7 P" m
# Exploit Title : Net Ways Cms Sql Injection Vulnerability
; R. g* |: e: O: j' O#
8 B: q9 L( l8 U8 t, u4 R# Author : IrIsT.Ir 0 r+ q o, K5 t# ?6 V5 O
# 5 h" U1 a3 T& z, o4 z& X+ N
# Discovered By : Am!r
3 s! ~4 j Q0 Q l# & a, V9 @* ~* ]
# Home : http://IrIsT.Ir/forum P9 S$ e. P7 F L) T+ [
#
, G* n) a z- K6 W4 `, x) R6 i" D# Software Link : http://www.netways.com/ www.political-security.com
! ^# A3 m: p- I& L' k/ w#
* [8 |1 ^+ e( o, M4 A+ S# Security Risk : High
. y* o1 ?# C% n7 ^- n# . E! V+ y. f, s2 g/ r5 A
# Version : All Version
3 ~/ ~* D- i8 @9 Z#
1 s. S# G: S U# ~# R' K( Z# Tested on : GNU/Linux Ubuntu - Windows Server - win7
2 M& X5 A5 e6 h& b# B, g' a/ v- Q. i% ?4 u# 6 _, E8 d7 V% i0 G
# Dork : intext:"Designed & developed by NetWays" . K$ B, R9 v5 Q) u6 N
#
9 A, O! g# d$ }. ~ \' T' W################################################################################??########
1 b3 u* n" w0 a9 d: f# ; ~4 ?% \6 p% [- ] i) D7 { x. k
# Expl0iTs : 0 {. |: r, \: B+ H1 Z# m# T
# - Z2 P# F P- K3 g; m! x
# http://target.com/news.php?id=[Sql] 4 V2 m1 Y- _; H W9 c
#
* {- f; \& M6 Z" v# B D0 t#
2 Y% t! D7 U( b( G) k! w" h0 D M# D3mo : " p% w2 ?( B: O8 ~/ `
#
% a k$ D# f- k7 [# http://compagnieparento.com/news.php?id=7[Sql]
/ Q) z6 S) A/ @" P" U# * x# e+ b6 z, T$ Q) U3 O( w, f3 I
################################################################################??######## 9 K; D* O9 Y6 Q B( W
# 5 D- ?; S. F( X( y( Y7 a
# Greats : B3HZ4D - nimaarek - Dead.Zone - C0dex - SpooferNinja - TaK.FaNaR - Nafsh - BestC0d3r
7 D. ~. j, f6 g4 E8 U#
7 X7 e9 e4 @' N9 E+ u/ r, E# 0x0ptim0us - TaK.FaNaR - m3hdi - F@rid - Siamak.Black - H4x0r - dr.tofan - skote_vahshat - d3c0d3r
4 ~4 n3 Z8 i: y x, w' s* L8 Z#
# r0 ~2 O. ^5 G6 ^* E# Mr.Xpr & M.R.S.CO & Mr.Cicili & H-SK33PY & All Members In Www.IrIsT.Ir/forum * W; Y9 l$ g8 {1 w9 o. w' R) v
#
5 d- M% l* \2 q################################################################################??######## |