MonitorLine.Links.Management.Index.PHP.SQL.Injection

description-logoDescription

This indicates an attempt to exploit a SQL injection vulnerability in Links Management Application.
The vulnerability can be exploited by sending a specially crafted HTTP request, with injected SQL statements in the "lcnt" parameter, to the "index.php" script. A remote attacker can exploit this to execute arbitrary SQL commands on the back end database.

affected-products-logoAffected Products

Links Management Application version 1.0 and prior.

Impact logoImpact

System compromise: SQL command injection.

recomended-action-logoRecommended Actions

Currently we are not aware of any vendor supplied fix for this issue.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)