PHP remote file inclusion vulnerability in constants.php in SiteDepth CMS 3.01 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the SD_DIR parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Sitedepth_cms | Sitedepth | * | 3.01 (including) |