EXPLOITDB-EDB-9017

EXPLOITDB python VERIFIED WORKING POC
Exploit for CVE-2009-2607 - Joomla! - SQL Injection
AI Analysis

This Perl script exploits a SQL injection vulnerability in the Joomla com_pinboard component to extract usernames and password hashes from the jos_users table. It constructs a malicious URL with a UNION-based SQL injection payload and parses the response to display the extracted credentials.

Attack Type
SQLi
Complexity
trivial
Reliability
reliable
MITRE ATT&CK
T1189 - Drive-by Compromise T1505 - Server Software Component
Loading exploit code...
Download ZIP Password: eip
Source
Platform Exploitdb
Type webapps
Platform php
Language python
Files 1
Authors
Stack
Vulnerability
CVE-2009-2607
Joomla! - SQL Injection