# SQL Injection on CMS eaZy
# Risk: High
# CWE number: CWE-89
# Date: 09/04/2014
# Vendor: www.eazycms.com
# Author: Felipe " Renzi " Gabriel
# Contact: renzi@linuxmail.org
# Tested on Windows 8 pro
# Vulnerable File: /index.php
# Exploit: http://host/index.php?tab=[SQLI]