PHP remote file inclusion vulnerability in handlers/email/mod.listmail.php in PHlyMail Lite 3.4.4 and earlier (Build 3.04.04) allows remote attackers to execute arbitrary PHP code via a URL in the _PM_[path][handler] parameter.
Link | Tags |
---|---|
https://www.exploit-db.com/exploits/2211 | exploit |
http://www.vupen.com/english/advisories/2006/3338 | vdb entry |
http://www.securityfocus.com/bid/19587 | vdb entry exploit |
https://exchange.xforce.ibmcloud.com/vulnerabilities/28450 | vdb entry |
http://securitytracker.com/id?1016718 | vdb entry exploit |
http://secunia.com/advisories/21582 | exploit third party advisory vendor advisory |