Joomla Component JE Event Calendar LFI Vulnerability

2010-06-27 10:03:57

Critical Level : HIGH
Google Dork: inurl:/component/jeeventcalendar/
Price:$10.00
Author : Sid3^effects aKa HaRi <shell_c99[at]yahoo.com>
special thanks to : r0073r (inj3ct0r.com),L0rd CruSad3r,MaYur,MA1201,KeDar,Sonic,gunslinger_
greetz to :www.topsecure.net ,All ICW members and my friends :) luv y0 guyz
#######################################################################################################
Description:
Description:-

100% MVC structure follow. There are three different managers in that
component:-

1. Category Management
2. Event Management
3. Event Setting

#######################################################################################################
Xploit:jeeventcalenda LFI


DEMO URL : http://server/component/jeeventcalendar/?view=[LFI]

###############################################################################

Fixes

No fixes

Per poter inviare un fix è necessario essere utenti registrati.