PHP remote file inclusion vulnerability in index.php in Knusperleicht Newsletter 3.5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the NL_PATH parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Newsletter | Knusperleicht | * | 3.5 (including) |