Joomla Component My Car Multiple Vulnerabilities

2010-05-29 / 2010-05-30
Credit: Valentin
Risk: High
Local: No
Remote: Yes
CWE: CWE-79
CWE-89

# Exploit Title: Joomla Component My Car Multiple Vulnerabilities # Date: 28th May 2010 # Author: Valentin # Category: webapps/0day # Version: 1.0 # Tested on: # CVE : # Code : [:::::::::::::::::::::::::::::::::::::: 0x1 ::::::::::::::::::::::::::::::::::::::] >> General Information Advisory/Exploit Title = Joomla Component MyCar Multiple Vulnerabilities Author = Valentin Hoebel Contact = valentin@xenuser.org [:::::::::::::::::::::::::::::::::::::: 0x2 ::::::::::::::::::::::::::::::::::::::] >> Product information Name = My Car Vendor = unisoft.me Vendor Website = http://www.unisoft.me/extensions/ Affected Version(s) = 1.0 [:::::::::::::::::::::::::::::::::::::: 0x3 ::::::::::::::::::::::::::::::::::::::] >> XSS Example URI: index.php?option=com_mycar&task=1&pagina=0&ordine=preveh&modveh=[XSS] >> Information Disclosure Just play around with the parameters and URLS. You will notice that various errors (e.g. SQL errors) occur. They reveal information about the SQL queries within the PHP code and the absolute path of the website. Not very dangerous, but sometimes useful. >> Possible SQL Injection Triggering SQL errors with the help of several parameters is possible. Example URI: index.php?option=com_mycar&task=1&pagina=-1 [:::::::::::::::::::::::::::::::::::::: 0x4 ::::::::::::::::::::::::::::::::::::::] >> Additional Information Advisory/Exploit Published = 28th May 2010 [:::::::::::::::::::::::::::::::::::::: 0x5 ::::::::::::::::::::::::::::::::::::::] >> Misc Greetz && Thanks = inj3ct0r team, Exploit DB and hack0wn! Special Greetz = cr4wl3r and /JosS! <3 packetstormsecurity.org! [:::::::::::::::::::::::::::::::::::::: EOF ::::::::::::::::::::::::::::::::::::::]

References:

http://xforce.iss.net/xforce/xfdb/58975
http://www.xenuser.org/documents/security/joomla_com_mycar_multiple_vulnerabilities.txt
http://www.vupen.com/english/advisories/2010/1271
http://www.securityfocus.com/bid/40430
http://www.exploit-db.com/exploits/12779
http://secunia.com/advisories/39983
http://osvdb.org/64999


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top