PHP remote file inclusion vulnerability in cms/system/openengine.php in openEngine 2.0 beta4 and previous versions allows remote malicious users to execute arbitrary PHP code via a URL in the oe_classpath parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
openengine openengine 1.9_beta2 |
||
openengine openengine 1.9_beta3 |
||
openengine openengine 1.7.1 |
||
openengine openengine 1.8_beta2 |
||
openengine openengine 1.9_beta1 |
||
openengine openengine |