PT-2026-35349 · Likeadmin Likeshop · Likeadmin Php

Z0Ng

·

Published

2026-04-27

·

Updated

2026-04-27

·

CVE-2026-7083

CVSS v2.0

5.8

Medium

AV:N/AC:L/Au:M/C:P/I:P/A:P
A vulnerability has been found in likeadmin-likeshop likeadmin php up to 1.9.6. Affected by this issue is the function queryResult of the file serverappadminapiliststoolsDataTableLists.php of the component dataTable Admin API. The manipulation leads to sql injection. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet.

Exploit

Fix

Special Elements Injection

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2026-7083

Affected Products

Likeadmin Php