PHP remote file inclusion vulnerability in styles/default/global_header.php in MyPHP CMS 0.3 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the domain parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Myphp_cms | Myphp_cms | 0.3 (including) | 0.3 (including) |
Myphp_cms | Myphp_cms | 0.3.1 (including) | 0.3.1 (including) |