Electroweb Online Examination System version 1.0 suffers from a remote SQL injection vulnerability.
ba9cad5dc2aff449dbb2ccc4fe7070588d5410c8ecbf2320119f38d13d1c0750
# Exploit Title: Online examination system 1.0 - SQL Injection
# Google Dork: inurl:showtest.php?subid=
# Date: 2016/06/05
# Exploit Author: Ali Ghanbari
# Vendor Homepage: https://www.onlinefreeprojectdownload.com
# Sofware Link :
https://www.onlinefreeprojectdownload.com/download.php?name=projects/php%20projects/Online_exam.zip
# Version: 1.0
#Exploit:
https://localhost/{PATH}/showtest.php?subid=[SQL Injection]
#Admin Panel:
https://localhost/{PATH}/admin
####################################
[+]Exploit by: Ali Ghanbari
[+]My Telegram :@Exploiter007