SQLi - SQL injection wikipedia http://en.wikipedia.org/wiki/Code_injec ... _injection
LFI - Local File Inclusion scribd http://www.scribd.com/doc/6498408/Remot ... -Explained
RFI - Remote file inclusion wikipedia http://en.wikipedia.org/wiki/Remote_File_Inclusion
DT - Directory Traversal wikipedia http://en.wikipedia.org/wiki/Directory_traversal
ID = Information Disclosure: account information or sensitive information publicly viewable
Most start with an automated scanner tool that scans for specific versions of Joomla and specific extensions versions. (same with wordpress and others) Once vulnerabilities are identified then one of the above is used to gain access.
LFI - Local File Inclusion scribd http://www.scribd.com/doc/6498408/Remot ... -Explained
RFI - Remote file inclusion wikipedia http://en.wikipedia.org/wiki/Remote_File_Inclusion
DT - Directory Traversal wikipedia http://en.wikipedia.org/wiki/Directory_traversal
ID = Information Disclosure: account information or sensitive information publicly viewable
Most start with an automated scanner tool that scans for specific versions of Joomla and specific extensions versions. (same with wordpress and others) Once vulnerabilities are identified then one of the above is used to gain access.
0 comments:
Post a Comment