Leftover Debug Code in Blaauw Remote Kiln Control through v3.00r4 allows a user to execute arbitrary php code via /default.php?idx=17.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Remote_kiln_control | Blaauwproducts | * | 3.0.0 (excluding) |
Remote_kiln_control | Blaauwproducts | 3.0.0 (including) | 3.0.0 (including) |
Remote_kiln_control | Blaauwproducts | 3.0.0-v4 (including) | 3.0.0-v4 (including) |