Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Weke

#37748de 53,634
7.5CVSS total
Vulnerabilidades · 1
PT-2003-2449
7.5
2003-12-31
Goldlink · Goldlink · CVE-2003-1504
**Name of the Vulnerable Software and Affected Versions** Goldlink version 3.0 **Description** The issue allows remote attackers to execute arbitrary SQL commands. This is achieved via the `vadmin login` or `vadmin pass` cookie in a request to "goldlink.php". **Recommendations** For Goldlink version 3.0, consider restricting access to the "goldlink.php" endpoint until a patch is available. As a temporary workaround, avoid using the `vadmin login` and `vadmin pass` cookies in requests to "goldlink.php" to minimize the risk of exploitation.