Multiple PHP remote file inclusion vulnerabilities in phpXMLDOM (phpXD) 0.3 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the path parameter to (1) dom.php, (2) dtd.php, or (3) parser.php in include/.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Phpxmldom | Phpxmldom | 0.3 (including) | 0.3 (including) |