MEDIUM
merchants/index.php in Post Affiliate Pro 2.0.4 and earlier, with magic_quotes_gpc disabled, allows remote attackers to include arbitrary local files via the md parameter, possibly due to a directory traversal vulnerability
Published Nov 30, 2005
5.0
MEDIUMCVSS 2.0
EPSS 1.29%
Description
Affected products
Remediation
Metrics
References (1)
Change history (0)
No recorded changes yet.