| Joomla 1.5.x has been Exploited! Everyone can change "admin" password! |
|
|
| Wednesday, 13 August 2008 | |
|
The new Joomla 1.5 is vulnerable to a very lame exploit that changes the administrator password in seconds. Upgrade your sites immediately! Proof of exploit here: Example : 1. Go to url : target.com/index.php?option=com_user&view=reset&layout=confirm 2. Write into field "token" char ' and Click OK. 3. Write new password for admin 4. Go to url : target.com/administrator/ 5. Login admin with new password Patch to the latest version now!
|
|
| Last Updated ( Monday, 18 August 2008 ) |
| < Prev | Next > |
|---|