PHP remote file inclusion vulnerability in gorum/dbproperty.php in PHPOutsourcing Zorum 3.5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the appDirName parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Zorum | Phpoutsourcing | * | 3.5 (including) |