PHP file include vulnerability in download.php in PHPSimplicity Simplicity oF Upload before 1.3.1 allows remote attackers to include arbitrary local and remote files via the language parameter and a terminating null (%00) characters.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Simplicity_of_upload | Phpsimplicity | 1.3 (including) | 1.3 (including) |