PHP remote file inclusion vulnerability in addvip.php in phpMYTGP 1.4b allows remote attackers to execute arbitrary PHP code via a URL in the msetstr[PROGSDIR] parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Phpmytgp | Phpmytgp | 1.4b (including) | 1.4b (including) |