PHP remote file inclusion vulnerability in administration/user/lib/group.inc.php in OpenSurveyPilot (osp) 1.2.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the cfgPathToProjectAdmin parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Opensurveypilot | Opensurveypilot | * | 1.2.1 (including) |