PHP remote file inclusion vulnerability in phpAdsNew/view.inc.php in Albasoftware Phpauction 2.1 and possibly later versions, with phpAdsNew 2.0.5, allows remote attackers to execute arbitrary PHP code via a URL in the phpAds_path parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Phpauction | Gianluca_baldo | 2.1 (including) | 2.1 (including) |
Phpadsnew | Phpadsnew | 2.0.5 (including) | 2.0.5 (including) |