PHP remote file inclusion vulnerability in plus.php in plusPHP Short URL Multi-User Script 1.6 allows remote attackers to execute arbitrary PHP code via a URL in the _pages_dir parameter.
References
Configurations
History
No history.
Information
Published : 2008-05-28 15:32
Updated : 2024-02-04 17:33
NVD link : CVE-2008-2480
Mitre link : CVE-2008-2480
CVE.ORG link : CVE-2008-2480
JSON object : View
Products Affected
plusphp
- plusphp_short_url_multi-user_script
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')