PHP remote file inclusion vulnerability in editprofile.php in php(Reactor) 1.27pl1 allows remote attackers to execute arbitrary PHP code via a URL in the pathtohomedir parameter.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Php(reactor) |
Ekilat_llc |
1.27pl1 |
1.27pl1 |
References