PHP remote file inclusion vulnerability in config.php in Comdev eCommerce 3.0 allows remote attackers to execute arbitrary PHP code via the path[docroot] parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Comdev_ecommerce | Comdev | 3.0 (including) | 3.0 (including) |