Chitasoft version 3.6.2 suffers from a remote SQL injection vulnerability.
b8e6ee3398abdd19039b38944eaffefcc4f40997b47c4b627b90f1c62624af70
# Exploit Title: chitasoft Login Page SQL Injection Vulnerability
# Version : 3.6.2
# Exploit Author: Hesam Bazvand
# Software Link: http://sharetronix.ir/wp-content/uploads/2014/10/gold.zip
# Tested on: Windows 10 / Kali Linux
# Category: WebApps
# Dork : O*O+-OSSOU O3OSSUOa : UUOaOSSO3OSSUOa
# Email : Black.king066@gmail.com
Exploit : Insert ' In Username field And Enjoy
Demo Targets : http://gilletteshop.ir/account.php
http://mehregan.co/account.php
http://www.onlineyadak.com/