PHPAdsNew PHP script allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Phpadsnew |
Phpadsnew |
2.0_beta5 (including) |
2.0_beta5 (including) |
References