PHP remote file inclusion vulnerability in index.php in phpFullAnnu CMS (pfa CMS) 6.0 allows remote attackers to execute arbitrary PHP code via a URL in the repinc parameter. NOTE: CVE disputes this issue since $repinc is set to a constant value before use
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Pfa_cms | Netsliver | 6.0 (including) | 6.0 (including) |