Multiple PHP remote file inclusion vulnerabilities in Tropicalm Crowell Resource 4.5.2 allow remote attackers to execute arbitrary PHP code via a URL in the RESPATH parameter to (1) dosearch.php or (2) printfriendly.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Tropicalm_crowell_resource | Tropicalm | 4.5.2 (including) | 4.5.2 (including) |