Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-3335. PoCs published by jdc.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in the Joomla Component Turtushout 0.11. The payload injects a malicious SQL query into the 'Name' field to extract username and email from the #__users table where gid=25 (likely admin users).
Description
SQL injection vulnerability in the TurtuShout component 0.11 for Joomla! allows remote attackers to execute arbitrary SQL commands via the Name field.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in the Joomla Component Turtushout 0.11. The payload injects a malicious SQL query into the 'Name' field to extract username and email from the #__users table where gid=25 (likely admin users).