CGR BRASIL CMS suffers from a remote SQL injection vulnerability.
527dde2e24f1d000e533c516a9df7e090f7841c90a7a5cd268ea4f3be425586a
[+] Multiple Sql Injection on CGR BRASIL CMS
[+] Date: 21/04/2014
[+] Risk: High
[+] Author: Felipe Andrian Peixoto
[+] Vendor Homepage: http://www.cgrbrasil.com.br
[+] Contact: felipe_andrian@hotmail.com
[+] Tested on: Windows 7 and Linux
[+] Exploit : http://host/print.php?id=[SQL Injection]
[+] Exploit2 : http://host/print_noticia.php?id=[SQL Injection]
[+] Exploit3 : http://host/pop_up.php?id=[SQL Injection]
[+] Admin Page : http://host/admin