eladmin v2.7 and before is vulnerable to Server-Side Request Forgery (SSRF) which allows an attacker to execute arbitrary code via the DatabaseController.java component.
An attacker sends a crafted HTTP request to the vulnerable DatabaseController.java component, forcing the server to execute requests to internal or external network resources (SSRF). This mechanism is then leveraged to escalate the attack and execute arbitrary code on the server side (RCE). The attack vector does not require authentication or user interaction, which significantly lowers the barrier to entry for the attacker.
An attacker can gain full control over the server — including confidentiality, integrity and availability of data (CVSS scores C:H/I:H/A:H). Arbitrary code execution, system takeover and access to internal network infrastructure are possible.
Patches available from the manufacturer should be applied according to the references. It is recommended to update to a version newer than 2.7 and restrict access to DatabaseController-related endpoints at the firewall or reverse proxy level to trusted IP addresses.
Eladmin version 2.7 and all earlier versions.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HEladmin
APPEladmin≤ 2.7
Related vulnerabilities
CSV Injection w module pobierania logów wyjątków — Eladmin
The eladmin v2.7 and before contains a remote code execution (RCE) vulnerability that can control all applicat...
W eladmin w wersji 2.7 i wcześniejszych odkryto podatność pozwalającą na arbitralny reset hasła dowolnego użyt...
A vulnerability was identified in elunez eladmin up to 2.7. Affected by this vulnerability is the function Enc...
A vulnerability, which was classified as problematic, has been found in elunez eladmin up to 2.7. Affected by ...