CVE-2015-4118 | ISPConfig up to 3.0.5.4 show_sys_state.php server sql injection (Advisory 132238 / EDB-37259)
A vulnerability was found in ISPConfig up to 3.0.5.4. It has been classified as critical. This affects an unknown part of the file monitor/show_sys_state.php. The manipulation of the argument server leads to sql injection.
This vulnerability is uniquely identified as CVE-2015-4118. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.