PHP remote file inclusion vulnerability in akarru.gui/main_content.php in Akarru Social BookMarking Engine 0.4.3.34 and earlier, and possibly 0.4.4.120, allows remote attackers to execute arbitrary PHP code via a URL in the bm_content parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Social_bookmarking_engine | Akarru | 0.4.3.2 (including) | 0.4.3.2 (including) |
Social_bookmarking_engine | Akarru | 0.4.3.3 (including) | 0.4.3.3 (including) |
Social_bookmarking_engine | Akarru | 0.4.3.34 (including) | 0.4.3.34 (including) |
Social_bookmarking_engine | Akarru | 0.4.4.120 (including) | 0.4.4.120 (including) |