CVE-2018-17092: i4a Donlinkage

Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.

An issue was discovered in DonLinkage 6.6.8. SQL injection in /pages/proxy/php.php and /pages/proxy/add.php can be exploited via specially crafted input, allowing an attacker to obtain information from a database. The vulnerability can only be triggered by an authorized user.

Affected products

  • i4a Donlinkage: version 6.6.8 only

Published 2018-09-16. Last modified 2026-06-17.