CVE 5.1 MEDIUM

likeadmin-likeshop likeadmin_php dataTable Admin API DataTableLists.php queryResult sql injection_CVE-2026-7083

5.1 / 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P

Description

A vulnerability has been found in likeadmin-likeshop likeadmin_php up to 1.9.6. Affected by this issue is the function queryResult of the file server\app\adminapi\lists\tools\DataTableLists.php of the component dataTable Admin API. The manipulation leads to sql injection. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet.

Basic Information

ID CVE-2026-7083
Source VulDB
Published Apr 27, 2026 at 03:30

Affected Product

Vendor likeadmin-likeshop
Product likeadmin_php
Version 1.9.0
Affected Versions likeadmin-likeshop likeadmin_php 1.9.0
likeadmin-likeshop likeadmin_php 1.9.1
likeadmin-likeshop likeadmin_php 1.9.2
likeadmin-likeshop likeadmin_php 1.9.3
likeadmin-likeshop likeadmin_php 1.9.4
likeadmin-likeshop likeadmin_php 1.9.5
likeadmin-likeshop likeadmin_php 1.9.6

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.