Description: EgiX has discovered a vulnerability in LinPHA, which can be exploited by malicious people to conduct SQL injection attacks.
Input passed to the "order" parameter in new_images.php is not properly sanitised before being used in an SQL query in include/img_view.class.php. This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.
The vulnerability is confirmed in version 1.3.1. Other versions may also be affected.
Solution: Update to version 1.3.2.
Provided and/or discovered by: EgiX
Changelog: 2007-07-31: Added CVE reference.
2007-08-10: Updated "Solution" section.
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.