PHP remote file inclusion vulnerability in phfito-post.php in Alex Kocharin PHP Fidonet Tosser (PhFiTo) 1.3.0 in phpFidoNode allows remote malicious users to execute arbitrary PHP code via a URL in the SRC_PATH parameter to phfito-post.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
php fidonet tosser php fidonet tosser 1.3.0 |
||
phpfidonode phpfidonode |