PHP remote file inclusion vulnerability in includes/profilcp_constants.php in the Profile Control Panel (CPanel) module for mxBB 0.91c allows remote malicious users to execute arbitrary PHP code via a URL in the module_root_path parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mxbb mxbb 0.91c |