PHP remote file inclusion vulnerability in common.php in phpATM 1.21, and possibly earlier versions, allows remote attackers to execute arbitrary PHP code via a URL in the include_location parameter to index.php.
Link | Tags |
---|---|
http://securitytracker.com/id?1014008 | vdb entry |
http://www.osvdb.org/16692 | vdb entry |
http://secunia.com/advisories/15420 | third party advisory |
http://marc.info/?l=bugtraq&m=111653168810937&w=2 | mailing list |