PHP remote file inclusion vulnerability in funzioni/lib/show_hlp.php in klinza professional cms 5.0.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the appl[APPL] parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Klinza_professional_cms | Klinza | * | 5.0.1 (including) |