Multiple PHP remote file inclusion vulnerabilities in AFGB GUESTBOOK 2.2 allow remote attackers to execute arbitrary PHP code via a URL in the Htmls parameter in (1) add.php, (2) admin.php, (3) look.php, or (4) re.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Afgb_guestbook | Afgb | 2.2 (including) | 2.2 (including) |