CVE-2016-20096 PUBLISHED

Linknat VOS3000/VOS2009 2.1.2.0 SQL Injection via login.jsp

Assigner: VulnCheck
Reserved: 21.07.2026 Published: 21.07.2026 Updated: 21.07.2026

Linknat VOS3000 and VOS2009 through version 2.1.2.0 contain an unauthenticated SQL injection vulnerability that allows remote attackers to execute arbitrary SQL commands by manipulating the name parameter in a POST request to the login endpoint. Attackers can inject malicious SQL through the login form and retrieve injected query results from a subsequent session request, enabling extraction of plaintext credentials and other database content with DBA-level privileges.

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
CVSS Score: 9.3

Product Status

Vendor Kunshi Network Technology Co., Ltd.
Product Linknat VOS3000
Versions Default: affected
  • Version 2.1.1.5 is affected
  • Version 2.1.1.8 is affected
  • Version 2.1.2.0 is affected
Vendor Kunshi Network Technology Co., Ltd.
Product Linknat VOS2009
Versions Default: affected
  • Version 2.1.1.5 is affected
  • Version 2.1.1.8 is affected
  • Version 2.1.2.0 is affected

Credits

  • Osama Khalid finder
  • Fatullayev Asadbek reporter

References

Problem Types

  • Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CWE