################################################################################??######## , b$ I2 H3 L( }+ s9 v
# " t1 q6 x$ J+ U! t
# Exploit Title : Net Ways Cms Sql Injection Vulnerability
' }7 x9 ^. F& Y1 n6 A#
" {+ g; ]8 a/ x! H/ c/ w) N7 ^# Author : IrIsT.Ir
1 K( D& H9 B+ C8 l" L/ A#
+ ~* C" r" a$ y( W6 b* `# Discovered By : Am!r
9 ~" Q4 x! E6 ]) `: [) e" }4 `#
; T: B& X- {* @: |& U: `# Home : http://IrIsT.Ir/forum ' D$ C' @; Z9 H
#
. ?! v; b; H' P$ y9 w! u1 ]+ t# Software Link : http://www.netways.com/ www.political-security.com
" F( @* n; n& l. j( Y. U#
$ T# P' y2 n+ B9 N/ V# Security Risk : High # ?5 j7 v/ Q( ]( R
#
# r' v ]2 ]! k" D% Y# Version : All Version
) n/ O5 |$ A/ c ~+ z; Y#
$ w' q0 }6 ~0 w( r# Tested on : GNU/Linux Ubuntu - Windows Server - win7 # Q& q9 E0 K N$ T1 L% H2 l
#
1 V' ~' w& v9 a# Dork : intext:"Designed & developed by NetWays"
, L& y" m0 W5 @#
, X! ?1 Y0 z$ Z6 H) J, E################################################################################??########
2 y- N4 `5 W" Z! A% j5 {* `#
, _) Z- C4 j s; n) N2 l- N# Expl0iTs : * E* T$ W) o1 s( r E s" v
#
b, d# z* G/ ~/ }# http://target.com/news.php?id=[Sql] 9 m% W* N$ T3 h8 w7 J3 |4 h9 ?
# & m0 ]: v6 u$ t
# ; @" E* U! d7 d1 W
# D3mo :
/ ~, n& K! `1 B#
+ E2 O+ F# V" j# http://compagnieparento.com/news.php?id=7[Sql]
+ u$ ` W! H7 ^$ J# - B4 |+ E% D- c
################################################################################??######## 5 O' d- q2 h0 e9 n3 t3 x
#
- @7 n, P# K. U% T3 n) b8 O. L2 _+ H/ n# Greats : B3HZ4D - nimaarek - Dead.Zone - C0dex - SpooferNinja - TaK.FaNaR - Nafsh - BestC0d3r 2 H9 |0 m& `8 {, J+ D- {0 g
#
) K# \9 }- E' D) Q8 }# 0x0ptim0us - TaK.FaNaR - m3hdi - F@rid - Siamak.Black - H4x0r - dr.tofan - skote_vahshat - d3c0d3r ; _5 ?% z- N/ D
#
: M/ y! c* v- }) s5 d7 H# Mr.Xpr & M.R.S.CO & Mr.Cicili & H-SK33PY & All Members In Www.IrIsT.Ir/forum / F3 K \& B- T- n6 V' `2 R
#
/ l L& A3 R, a################################################################################??######## |