|-----------------------------------------------------------------|
|-------------------In The Name Of God------------------------|
|-----------------------------------------------------------------|
|
| Exploit Title: CREATIVE cms sql injection V1.2
| Exploit Author: Ashiyane Digital Security Team
| Vendor Homepage: http://creative-zone.biz/
| Google Dork : intext:Designed & Developed By: CREATIVE-ZONE inurl:.php/id=
| Date: 29/8/2017
| Tested on: Windows 7
|
|----------------------------------------------------------------|
| Proof:
|
| http://www.soccerexporter.com/about.php?id=5
| http://www.hurleyglovesandbelts.com/about.php?id=c
| www.handikitchen.com.au/about.php?id=a
| http://www.spallimpex.com/page.php?id=s
|
|----------------------------------------------------------------|
| Discovered By : Loard Mahdi
|----------------------------------------------------------------|