################################################################################??######## " T3 g b% \3 D4 @/ ?8 M) u/ Y
#
2 \( h( x; z1 b$ D# Exploit Title : Net Ways Cms Sql Injection Vulnerability r4 j6 y Y! g! }' V0 j
#
3 [ Z2 Y2 |, R$ m3 M# Author : IrIsT.Ir 9 d5 y1 c7 p4 E. q
# " _! c2 V5 {! o6 I- a
# Discovered By : Am!r & g- F: S6 d$ ?% f# G8 H- j
# % P% |7 U3 X6 c! O4 R
# Home : http://IrIsT.Ir/forum
* E6 P; N0 b# ]# K5 b! m [- C, P# 3 ~3 s" ?# q2 E( I
# Software Link : http://www.netways.com/ www.political-security.com( k4 {, x& Z% X( R, y0 Q8 X# q
#
) s6 A/ P2 S5 T1 {3 ?. Z4 Y ~# Security Risk : High 8 j2 U7 A/ I8 d v" h
#
3 ^) G3 W! [' [3 h. ]" L( v( Q# Version : All Version
4 X! h; P' v4 X* }4 p# , Y; u0 H% Q1 O0 \6 K
# Tested on : GNU/Linux Ubuntu - Windows Server - win7 ' P) z! }- k! x
# 6 K Q! [1 D" e, E6 x$ }
# Dork : intext:"Designed & developed by NetWays"
; B. E) w. G* `#
0 z- |7 _: n2 J6 d4 J################################################################################??########
. ~1 B8 N% d9 { `% K# - q' v4 s9 @, h; O* ?3 u
# Expl0iTs : $ J Y" r* ?5 v& r/ a1 O
# : G% H# S6 ?1 @4 J# a' X
# http://target.com/news.php?id=[Sql]
l0 t4 ^; y N9 o* l& W# 8 x3 n" r3 q2 |" r8 P% W' s
# . }$ O1 F" \0 n) j/ Q9 M6 V( x
# D3mo :
. e1 k, O( Q( z#
6 w* ^% Y% {' c9 j' T* B# http://compagnieparento.com/news.php?id=7[Sql] ) Q. Z. t1 j4 k& D x3 @+ B
# ) V+ x" X5 |3 ]% L$ e2 v
################################################################################??######## " y4 A3 z1 g+ s- g& B
# , p8 e* Q4 |3 V L$ x( Z; n
# Greats : B3HZ4D - nimaarek - Dead.Zone - C0dex - SpooferNinja - TaK.FaNaR - Nafsh - BestC0d3r
" B9 l* w/ o. Y. m' t. v o# F; w2 e8 [9 j9 c; C
# 0x0ptim0us - TaK.FaNaR - m3hdi - F@rid - Siamak.Black - H4x0r - dr.tofan - skote_vahshat - d3c0d3r 3 O1 ?( |$ D7 x3 S
# ( l* `9 S8 g+ }& h" Z8 F
# Mr.Xpr & M.R.S.CO & Mr.Cicili & H-SK33PY & All Members In Www.IrIsT.Ir/forum & e3 Y% D7 G h# M. [
# + o- }; r: \3 G2 s
################################################################################??######## |