PHP remote file inclusion vulnerability in order/login.php in IDevSpot PhpHostBot 1.06 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the svr_rootscript parameter, a different vector than CVE-2007-4094 and CVE-2006-3776.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Phphostbot | Idevspot | 1.06 (including) | 1.06 (including) |