PHP remote file inclusion vulnerability in login/secure.php in UeberProject Management System 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the cfg[homepath] parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ueberproject_management_system | Ueberproject_management_system | * | 1.0 (including) |