PHP remote file inclusion vulnerability in main/forum/komentar.php in OneClick CMS (aka Sisplet CMS) 05.10 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the site_path parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Oneclick_cms | Oneclick_cms | * | 05.10 (including) |
| Sisplet_cms | Sisplet_cms | * | 05.10 (including) |