CVE-2018-17092: i4a Donlinkage
Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.
An issue was discovered in DonLinkage 6.6.8. SQL injection in /pages/proxy/php.php and /pages/proxy/add.php can be exploited via specially crafted input, allowing an attacker to obtain information from a database. The vulnerability can only be triggered by an authorized user.
Affected products
- i4a Donlinkage: version 6.6.8 only
Published 2018-09-16. Last modified 2026-06-17.