Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:24712
HistorySep 12, 2010 - 12:00 a.m.

Joomla Component Clantools version 1.2.3 Multiple Blind SQL Injection Vulnerabilities

2010-09-1200:00:00
vulners.com
19

Exploit Title: Joomla Component Clantools version 1.2.3 Multiple Blind SQL Injection Vulnerabilities

Date: 05.09.2010

Author: Stephan Sattler // Solidmedia

Software Link: http://www.joomla-clantools.de/downloads/doc_download/7-clantools-123.html

Version: 1.2.3

[ Vulnerability 1 ]

http://www.site.com/joomlapath/index.php?option=com_clantools&squad=1+[Blind SQL]

[ Vulnerability 2 ]

http://www.site.com/joomlapath/index.php?option=com_clantools&task=clanwar&showgame=1+[Blind SQL]&Itemid=999

#Vulnerability was already reported, have a look at http://www.joomla-clantools.de to get a patch