PHP remote file inclusion vulnerability in watermark.php in the vm (aka Jean-Francois Laflamme) watermark 0.4.1 mod for Gallery allows remote malicious users to execute arbitrary PHP code via a URL in the GALLERY_BASEDIR parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
vm watermark vm watermark 0.4.1 |