PHP remote file inclusion vulnerability in pageheaderdefault.inc.php in Invisionix Roaming System Remote (IRSR) 0.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the _sysSessionPath parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Invisionix_roaming_system_remote | Invisionix_systems | * | 0.2 (including) |