vendor:
LedgerSMB, SQL-Ledger
by:
7.5
CVSS
HIGH
Local File Include, Authentication Bypass
CWE
Product Name: LedgerSMB, SQL-Ledger
Affected Version From: LedgerSMB prior to 1.1.10, SQL-Ledger prior to 2.6.27
Affected Version To:
Patch Exists: YES
Related CWE:
CPE:
Platforms Tested:
Local File Include and Authentication Bypass Vulnerabilities in LedgerSMB/SQL-Ledger
The LedgerSMB/SQL-Ledger application fails to sufficiently sanitize user-supplied input, leading to a local file-include vulnerability. Additionally, SQL-Ledger is prone to an authentication-bypass vulnerability. An attacker can exploit these vulnerabilities to view files, execute arbitrary local scripts within the webserver context, and potentially gain unauthorized access to the affected application.
Mitigation:
Apply the vendor-provided patches and upgrade LedgerSMB to version 1.1.10 or later. Upgrade SQL-Ledger to version 2.6.27 or later. Avoid providing user-supplied input without proper sanitization.