PHP remote file inclusion vulnerability in admin/inc/change_action.php in Andreas Robertz PHPNews 0.93 allows remote malicious users to execute arbitrary PHP code via a URL in the format_menue parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
andreas robertz phpnews 0.93 |