PHP remote file inclusion vulnerability in lang.php in SPiD before 1.3.1 allows remote attackers to execute arbitrary code via the lang_path parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Spid | Spid | 1.0.1 (including) | 1.0.1 (including) |
Spid | Spid | 1.0.3 (including) | 1.0.3 (including) |
Spid | Spid | 1.0.4 (including) | 1.0.4 (including) |
Spid | Spid | 1.1.0 (including) | 1.1.0 (including) |
Spid | Spid | 1.2.0 (including) | 1.2.0 (including) |
Spid | Spid | 1.2.1 (including) | 1.2.1 (including) |
Spid | Spid | 1.2.2 (including) | 1.2.2 (including) |
Spid | Spid | 1.2.3 (including) | 1.2.3 (including) |
Spid | Spid | 1.3.0 (including) | 1.3.0 (including) |