PHP remote file inclusion vulnerability in theme/settings.php in bluevirus-design SMA-DB 0.3.9 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the pfad_z parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Sma-db | Bluevirus-design | 0.3.9 (including) | 0.3.9 (including) |