PHP remote file inclusion vulnerability in plugins/widgets/htmledit/htmledit.php in Powl 0.94 allows remote attackers to execute arbitrary PHP code via a URL in the _POWL[installPath] parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Powl | Powl | 0.94 (including) | 0.94 (including) |