# Exploit Title: Wordpress wilderness SQL injection
# Google Dork: inurl:/wp-content/themes/wilderness/gallery.php
# Date: 2013 - 01
# Exploit Author: Ashiyane Digital Security Team
# Discovered by : Al!rzea 666
# Tested on: Linux , Windows 7
# Security Risk : High - SQL Injection
===================================
===================================
# Location: http://site.com//wp-content/themes/wilderness/gallery.php?id=[SQL]
# Demo : http://www.wXXXilderness.com/wp-content/themes/wilderness/gallery.php?id=574
*** inject manually or Use HAvij ***
=======================================
=======================================
Greetz to: My Lord ALLAH
=======================================
=======================================
Special tNx : Behrooz_Ice , Q7X, Ali_Eagle,Azazel , iman_taktaz,sha2ow , hossein19123 , Milad22 , MR.Vinci ,V1R4N64R , khatarnak ,Crypt0
And all Ashiyane Security [ Researcher Team AND Deface Team ]
=======================================