PHP remote file inclusion vulnerability in 123flashchat.php in the 123 Flash Chat 6.8.0 module for e107, when register_globals is enabled, allows remote malicious users to execute arbitrary PHP code via a URL in the e107path parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
123flashchat 123 flash chat module 6.8.0 |
||
e107 e107 |