################################################################################??######## , t, P2 t* z" T& x# e _- \
#
* x8 q H5 _$ W. K- `# Exploit Title : Net Ways Cms Sql Injection Vulnerability ' M ~/ C2 S0 g ~% t6 p' h" h. {* T
# / h0 k" J u( g! D, `9 l
# Author : IrIsT.Ir 6 Y7 _, h7 _6 `! a4 m) W( i
#
, o6 k3 p! |4 W5 V# Discovered By : Am!r
/ L( q5 S7 F6 I7 K9 J o" G) X#
J( o$ E6 N: q# Home : http://IrIsT.Ir/forum 3 W6 C# i7 f( M8 @# `* g( n0 F8 m
# ) s/ j+ e' H c9 P1 }8 L; |& j
# Software Link : http://www.netways.com/ www.political-security.com
2 [$ V3 N7 R. x& i, B#
! M4 |) W1 e _8 f+ A# Security Risk : High
& C& Y8 X0 Y9 F3 g" g5 b" e% Z#
* K8 X5 J* X3 a; S. P4 }" J; [# Version : All Version
0 k$ D) E8 k5 }5 ?7 k# 8 {( ?; X$ Q1 k3 A0 }/ u4 q2 e+ M: y
# Tested on : GNU/Linux Ubuntu - Windows Server - win7 6 T. S$ @9 d) X$ t' }
#
7 V# V6 m9 o1 g2 j d4 O5 O# Dork : intext:"Designed & developed by NetWays"
, J) O8 M. v7 N3 E5 K4 |7 k# & {+ h# [/ Q1 O7 f# V8 d/ k
################################################################################??######## ' X. h M7 _5 n- C0 a' Z1 ]7 Y
# ) }/ z) Z# k/ p! ]3 O, \2 u
# Expl0iTs :
- }7 b; e" P4 ~0 T" t) y#
0 L6 y# W0 Q) e3 b0 n8 E# http://target.com/news.php?id=[Sql] 6 u- u! l( Y5 q1 r( X
# 4 X& |# R- I) ]# B. Z2 k: a
# & A `3 G1 j3 A: B
# D3mo :
# C; P/ D, S* X5 E' A4 m# 3 q5 R& n' P* a/ z' n
# http://compagnieparento.com/news.php?id=7[Sql]
' i* H3 L" ]- v, h" k$ I- n/ o#
5 c4 i# \4 O+ }: b8 J; p################################################################################??######## 0 E2 q7 p8 F$ q4 E' h- S
#
; y' X; K* g# D, f# Greats : B3HZ4D - nimaarek - Dead.Zone - C0dex - SpooferNinja - TaK.FaNaR - Nafsh - BestC0d3r . w; V2 T9 `% c, h0 x2 ` r
#
; x0 U% ?( V# `8 ?) q: S: @" `# 0x0ptim0us - TaK.FaNaR - m3hdi - F@rid - Siamak.Black - H4x0r - dr.tofan - skote_vahshat - d3c0d3r
W" R2 j& ~5 g$ d" a/ m# : l! {* _; a5 c+ m9 b7 i( H: x: s
# Mr.Xpr & M.R.S.CO & Mr.Cicili & H-SK33PY & All Members In Www.IrIsT.Ir/forum
0 U6 W/ a9 e7 f6 |#
6 T. o3 L/ C% J' u, l) E################################################################################??######## |