Bug: Joomla Component com_wmtpic SQL Injection Vulnerability ( Ascii Version )

Search:
WLB2

Joomla Component com_wmtpic SQL Injection Vulnerability

Published
Credit
Risk
2011.11.04
**RoAd_KiLlEr**
High
CWE
CVE
Local
Remote
CWE-89
CVE-2010-4968
No
Yes
 Dork: inurl:"com_wmtpic"

CVSS Base Score
Impact Subscore
Exploitability Subscore
7.5/10
6.4/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Partial
Partial
Partial


[+]Title : Joomla Component com_wmtpic SQL Injection Vulnerability
[+]Author : **RoAd_KiLlEr**
[+]Contact : RoAd_KiLlEr[at]Khg-Crew[dot]Ws
[+]Tested on : Win Xp Sp 2/3
---------------------------------------------------------------------------
[~] Founded by **RoAd_KiLlEr**
[~] Team: Albanian Hacking Crew
[~] Contact: RoAd_KiLlEr[at]Khg-Crew[dot]Ws
[~] Home: http://a-h-crew.net
[~] Vendor: http://www.webmaster-tips.net
[~] Download
App:http://www.webmaster-tips.net/Download/View-details/9-Joomla-Components/183-Joomla-1.5-Flash-Gallery-wmtPic.html
==========ExPl0iT3d by **RoAd_KiLlEr**==========

[+]Description:
Flash based image gallery for Joomla. Joomla component wmtPic, with thumbnail support, caption and multiple file upload
option. Although it is not a must, it is better to put a link back to this site "Joomla component by
Webmaster-tips.net " on your website if you can. This Joomla 1.5 Component is licensed under the GPLv2.0.

=========================================

[+] Dork: inurl:"com_wmtpic"

==========================================


[+]. SQL-i Vulnerability
=+=+=+=+=+=+=+=+=+

[Exploit]: http://127.0.0.1/path/index.php?option=com_wmtpic&Itemid=[] <== SQL-i


References:

http://www.securityfocus.com/bid/41253
http://www.exploit-db.com/exploits/14128
http://packetstormsecurity.org/1007-exploits/joomlawmtpic-sql.txt

See this note in TXT Version

Bugtraq RSS
Bugtraq
 
REDDIT
REDDIT
 
DIGG
DIGG
 
LinkedIn
LinkedIn
 
CVE RSS
CVEMAP

Copyright 2014, cxsecurity.com
Ascii Version