# Exploit Title: SQL Injection in “ Impression Technologies LLC “
#-----------------------------------------------------------------------------------------
# Exploit Author: Mehdi Razmjoo ( razmjumehdi@gmail.com )
#-----------------------------------------------------------------------------------------
# Date: 2018.08.19
#-----------------------------------------------------------------------------------------
# Vendor Homepage: http://www.imprtech.com
#-----------------------------------------------------------------------------------------
# Category: Web Application
#-----------------------------------------------------------------------------------------
# CWE-89
#-----------------------------------------------------------------------------------------
# Vulnerability Path: http://Server/gallery.php?id=[SQLi]
#-----------------------------------------------------------------------------------------
#Tested On: Firefox - Safari
#-----------------------------------------------------------------------------------------
#
http://www.thecryers.com/gallery.php?id=9