Multiple PHP remote file inclusion vulnerabilities in Ripe Website Manager 0.8.9 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the level parameter to (1) admin/includes/author_panel_header.php or (2) admin/includes/admin_header.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ripe_website_manager | Ripe_website_manager | * | 0.8.9 (including) |