CVE-2008-5792
31.12.2008, 11:30
PHP remote file inclusion vulnerability in show_joined.php in Indiscripts Enthusiast 3.1.4, and possibly earlier, allows remote attackers to execute arbitrary PHP code via a URL in the path parameter. NOTE: the researcher also points out the analogous directory traversal issue.
Vendor | Product | Version |
---|---|---|
indisguise | indiscripts_enthusiast | 𝑥 ≤ 3.1.4 |
𝑥
= Vulnerable software versions
References