# Exploit title: Lenny CMS - SQL Injection Vulnerability
#
# Dork: “ Webdesign by Lenny inurl:news.php?id= ”
#
# Date: 2018-03-15
#
# Exploit Author: Mehdi Razmjoo ( razmjumehdi@gmail.com )
#
# Vendor Homepage: http://www.lennysstudio.com
#
# Category: Web Application
#
# CVE: -
#
# =============================
#
# Description:
#
# An attacker through this vulnerability can inject sql commands to the target.
#
#=============================
#
# Proof of Concept:
#
# http://server/news.php?id=[SQLi]
#
#