PHP remote file inclusion vulnerability in functions.php in phpECard 2.1.4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the include_path parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Phpecard | Phpecard | * | 2.1.4 (including) |