PHP remote file inclusion vulnerability in styles.php in Exhibit Engine (EE) 1.22 and previous versions allows remote malicious users to execute arbitrary PHP code via a URL in the toroot parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
photography-on-the-net exhibit engine 2 |