PHP remote file inclusion vulnerability in main.php in Ay System Solutions CMS 2.6 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the path[ShowProcessHandle] parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ay_system_solutions_cms | Ay_system_solutions | * | 2.6 (including) |