PHP remote file inclusion vulnerability in config.php in David Kent Norman Thatware 0.4.6 and possibly earlier allows remote attackers to execute arbitrary PHP code via a URL in the root_path parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Thatware | David_kent_norman | * | 0.4.6 (including) |