Direct static code injection vulnerability in shoutbox.php in ShoutPro 1.5.2 allows remote attackers to inject arbitrary PHP code into shouts.php via the shout parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Shoutpro | Shoutpro | * | 1.5.2 (including) |