Showing 1 vulnerability on this page for Spage

Signals CISA KEV Ransomware Nuclei
lylme vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

LyLme Spage ajax_link.php sql injection

A vulnerability, which was classified as critical, was found in LyLme Spage 2.1. This affects an unknown part of the file lylme_spage/blob/master/admin/ajax_link.php. The manipulation of the argument sort leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

CWE-74CWE-89May 11, 2025
CVSS6.9v4.0EPSS0.487%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX