PHP remote file inclusion vulnerability in AES/modules/auth/phpsecurityadmin/include/logout.php in AlberT-EasySite (AES) 1.0a5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the PSA_PATH parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Albert-easysite | Albert | * | 1.0a5 (including) |
| Albert-easysite | Albert | 0.8.12 (including) | 0.8.12 (including) |