PHP remote file inclusion vulnerability in members.php in Banex PHP MySQL Banner Exchange 2.21 allows remote attackers to execute arbitrary PHP code via a URL in the cfg_root parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Banex | Banex | 2.21 (including) | 2.21 (including) |