PHP remote file inclusion vulnerability in include/common.php in CyBoards PHP Lite 1.25 allows remote attackers to execute arbitrary PHP code via a URL in the script_path parameter. NOTE: CVE disputes this issue, since $script_path is set to a constant value
Name | Vendor | Start Version | End Version |
---|---|---|---|
Cyboards_php_lite | Cyboards | 1.25 (including) | 1.25 (including) |