======================================================================== | # Title : Joomla com_xmap 2.3.4 Sql injection vulnerability | # Author : indoushka | # email : indoushka4ever@gmail.com | # Tested on: windows 8.1 Français V.(Pro) | # Vendor : https://github.com/guilleva/Xmap/blob/master/xmap-update.xml ======================================================================== Sql injection : http://www.unhcr.org.in/index.php?option=com_xmap&view=html&id=1&Itemid=115 (inject her) Greetz : jericho http://attrition.org & http://www.osvdb.org/ * http://packetstormsecurity.com * Larry W. Cashdollar* Hussin-X *D4NB4R * ViRuS_Ra3cH * yasMouh * https://www.corelan.be * ---------------------------------------------------------------------------------------------------------------