Static code injection vulnerability in process.php in AimStats 3.2 allows remote attackers to inject PHP code into config.php via the number parameter in an update action.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Aimstats |
Aimstats |
3.2 (including) |
3.2 (including) |
References