EXPLOITDB-EDB-12056

EXPLOITDB text VERIFIED WORKING POC
Exploit for EIP-2026-108594 - Joomla! Component com_wisroyq 1.1 - Local File Inclusion
AI Analysis

The exploit demonstrates a Local File Inclusion (LFI) vulnerability in the Joomla component WISro Yahoo Quotes (com_wisroyq) version 1.1.x. The PoC shows how an attacker can read arbitrary files (e.g., /etc/passwd) by manipulating the 'controller' parameter.

Attack Type
info_leak
Complexity
trivial
Reliability
reliable
MITRE ATT&CK
T1190 - Exploit Public-Facing Application T1005 - Data from Local System
Loading exploit code...
Download ZIP Password: eip
Source
Platform Exploitdb
Type webapps
Platform php
Language text
Files 1
Authors
NoGe
Vulnerability
EIP-2026-108594
Joomla! Component com_wisroyq 1.1 - Local File Inclusion