Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-2782. PoCs published by Chip d3 bi0s.
AI-analyzed exploit summary This exploit demonstrates a blind SQL injection vulnerability in the Joomla component com_jfusion via the Itemid parameter. It automates the extraction of user credentials (e.g., password) from the jos_users table by brute-forcing character-by-character using ASCII values.
Description
SQL injection vulnerability in the JFusion (com_jfusion) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter to index.php.
Exploits (1)
This exploit demonstrates a blind SQL injection vulnerability in the Joomla component com_jfusion via the Itemid parameter. It automates the extraction of user credentials (e.g., password) from the jos_users table by brute-forcing character-by-character using ASCII values.