# Exploit Title: Kolifa Haber Script 1.3 SQL                                                                          
# Date: 08.10.2011 - 20:36                                                                                                       
# Author: Mr.PaPaRoSSe                                                                                                           
# Download Script: http://scripti.org/demo.php?id=97                                                      
# Tested On: BackTrack 5 - Windows xp sp3                                                                                        
# Platform: Php                                                                                                                  
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>                                                                     
                                                                                                                                 
Vunl file : show.php                                                                                                             
                                                                                                                                 
Exploit:                                                                                                                         
                                                                                                                                 
http://localhost/haber_pro/kategorigoster.php?kat_id=SQL injection  

Panel:
http://haberpro.awardspace.com/haber_pro/admin/admingiris.php                                                                   
                                                                                                                                 
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>                                                                    
# We attempted to work, you can not imagine.                                                                                     
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>                                                                    
# Contact: paparosse.blogspot.com                                                                                                
# Greetz: Http://DarkDevilz.in/                                                                                                  
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>                                                                    
' 3spi0n ~#  Black_Umo  ALEXTRAX  Brs_BaRoN  ZyX  x-Leader                                                                      
L4NETLY  GrayTendriL  DARKCOD3R  Santiq0  53rh4t  PerS  Mavi Karanlik Tarxes                                                                    
                                                                                                                                 
[And DD'z Family]                                                                                                                
                                                                                                                                 
[DarkDevilz - Defence And Destruction Group'z - TURKEY]                                                                          
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>