PHP remote file inclusion vulnerability in admin/header.php in PHP mcNews 1.3 allows remote malicious users to execute arbitrary PHP code by modifying the skinfile parameter to reference a URL on a remote web server that contains the code.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mcnews mcnews 1.3 |