PHP remote file include vulnerability in Derek Ashauer ashNews 0.83 allows remote attackers to include and execute arbitrary remote files via a URL in the pathtoashnews parameter to (1) ashnews.php and (2) ashheadlines.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ashnews | Ashwebstudio | 0.83 (including) | 0.83 (including) |