PHP remote file inclusion vulnerability in lib/activeutil.php in Quicksilver Forums (QSF) 1.2.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the set[include_path] parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Quicksilver_forums | Quicksilver_forums | * | 1.2.1 (including) |