Multiple PHP remote file inclusion vulnerabilities in PHPGlossar 0.8 allow remote attackers to execute arbitrary PHP code via a URL in the format_menue parameter to (1) admin/inc/change_action.php or (2) admin/inc/add.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Phpglossar | Phpglossar | 0.8 (including) | 0.8 (including) |