PHP remote file inclusion vulnerability in includes/header_simple.php in Ultimate PHP Board (UPB) 2.0 and previous versions allows remote malicious users to execute arbitrary PHP code via a URL in the _CONFIG[skin_dir] parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ultimate php board ultimate php board |