HIGH
PHP remote file inclusion vulnerability in al_initialize.php for AutoLinks Pro 2.1 allows remote attackers to execute arbitrary PHP code via an "ftp://" URL in the alpath parameter, which bypasses the incomplete blacklist that only checks for "http" and "https" URLs
Published Sep 2, 2005
7.5
HIGHCVSS 2.0
EPSS 2.67%
Description
Affected products
Remediation
Metrics
References (4)
Change history (0)
No recorded changes yet.