PHP remote file inclusion vulnerability in libs/tucows/api/cartridges/crt_TUCOWS_domains/lib/domainutils.inc.php in Tucows Client Code Suite (CCS) 1.2.1015 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the _ENV[TCA_HOME] parameter.
Link | Tags |
---|---|
https://www.exploit-db.com/exploits/2896 | exploit |
https://exchange.xforce.ibmcloud.com/vulnerabilities/30789 | vdb entry |