Anyway, the MySQL>5 allows me to take all DB details and entities in it. Also, the admin panel is vulnerable to login bypass due to lack of filtration of the data.
Below is the screenshot of the logged panel:
Thank you and hope they fix it...
nepali security and hacking team ktm hackerz shares and informs the vulnerabilities in Nepali websites and webservers. The one and only blog of first nepali hackers group