PHP remote file inclusion vulnerability in downloadcounter.php in STWC-Counter 3.4.0.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the stwc_counter_verzeichniss parameter.
The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Stwc-counter | Stwc-counter | * | 3.4.0 (including) |
Stwc-counter | Stwc-counter | 1.01 (including) | 1.01 (including) |
Stwc-counter | Stwc-counter | 1.1 (including) | 1.1 (including) |
Stwc-counter | Stwc-counter | 1.2 (including) | 1.2 (including) |
Stwc-counter | Stwc-counter | 1.02 (including) | 1.02 (including) |
Stwc-counter | Stwc-counter | 1.11 (including) | 1.11 (including) |
Stwc-counter | Stwc-counter | 1.12 (including) | 1.12 (including) |
Stwc-counter | Stwc-counter | 1.21 (including) | 1.21 (including) |
Stwc-counter | Stwc-counter | 1.22 (including) | 1.22 (including) |
Stwc-counter | Stwc-counter | 2.0.0 (including) | 2.0.0 (including) |
Stwc-counter | Stwc-counter | 2.0.1 (including) | 2.0.1 (including) |
Stwc-counter | Stwc-counter | 2.0.2 (including) | 2.0.2 (including) |
Stwc-counter | Stwc-counter | 2.1.0 (including) | 2.1.0 (including) |
Stwc-counter | Stwc-counter | 2.1.1 (including) | 2.1.1 (including) |
Stwc-counter | Stwc-counter | 2.2.0 (including) | 2.2.0 (including) |
Stwc-counter | Stwc-counter | 2.2.1 (including) | 2.2.1 (including) |
Stwc-counter | Stwc-counter | 2.2.2 (including) | 2.2.2 (including) |
Stwc-counter | Stwc-counter | 2.2.3 (including) | 2.2.3 (including) |
Stwc-counter | Stwc-counter | 2.2.4 (including) | 2.2.4 (including) |
Stwc-counter | Stwc-counter | 2.2.5 (including) | 2.2.5 (including) |
Stwc-counter | Stwc-counter | 2.2.6 (including) | 2.2.6 (including) |
Stwc-counter | Stwc-counter | 2.2.7 (including) | 2.2.7 (including) |
Stwc-counter | Stwc-counter | 2.3.0 (including) | 2.3.0 (including) |
Stwc-counter | Stwc-counter | 2.3.1 (including) | 2.3.1 (including) |
Stwc-counter | Stwc-counter | 2.4.0 (including) | 2.4.0 (including) |
Stwc-counter | Stwc-counter | 2.5.0 (including) | 2.5.0 (including) |
Stwc-counter | Stwc-counter | 2.5.1 (including) | 2.5.1 (including) |
Stwc-counter | Stwc-counter | 2.5.2 (including) | 2.5.2 (including) |
Stwc-counter | Stwc-counter | 2.6.0 (including) | 2.6.0 (including) |
Stwc-counter | Stwc-counter | 2.6.1 (including) | 2.6.1 (including) |
Stwc-counter | Stwc-counter | 2.6.2 (including) | 2.6.2 (including) |
Stwc-counter | Stwc-counter | 2.6.3 (including) | 2.6.3 (including) |
Stwc-counter | Stwc-counter | 2.6.4 (including) | 2.6.4 (including) |
Stwc-counter | Stwc-counter | 2.6.5 (including) | 2.6.5 (including) |
Stwc-counter | Stwc-counter | 2.6.6 (including) | 2.6.6 (including) |
Stwc-counter | Stwc-counter | 2.7.0 (including) | 2.7.0 (including) |
Stwc-counter | Stwc-counter | 2.7.1 (including) | 2.7.1 (including) |
Stwc-counter | Stwc-counter | 2.8.0 (including) | 2.8.0 (including) |
Stwc-counter | Stwc-counter | 2.8.1 (including) | 2.8.1 (including) |
Stwc-counter | Stwc-counter | 2.9.0 (including) | 2.9.0 (including) |
Stwc-counter | Stwc-counter | 2.9.1 (including) | 2.9.1 (including) |
Stwc-counter | Stwc-counter | 3.0.0 (including) | 3.0.0 (including) |
Stwc-counter | Stwc-counter | 3.0.1 (including) | 3.0.1 (including) |
Stwc-counter | Stwc-counter | 3.0.2 (including) | 3.0.2 (including) |
Stwc-counter | Stwc-counter | 3.0.3 (including) | 3.0.3 (including) |
Stwc-counter | Stwc-counter | 3.1.0 (including) | 3.1.0 (including) |
Stwc-counter | Stwc-counter | 3.2.0 (including) | 3.2.0 (including) |
Stwc-counter | Stwc-counter | 3.3.0 (including) | 3.3.0 (including) |