HIGH
Multiple PHP remote file inclusion vulnerabilities in smarty/smarty_class.php in Shop-Script FREE allow remote attackers to execute arbitrary PHP code via a URL in the (1) _smarty_compile_path, (2) smarty_compile_path, (3) get_plugin_filepath, (4) smarty_dir, and (5) filename parameters
Published Apr 3, 2007
7.5
HIGHCVSS 2.0
EPSS 1.36%
Description
Affected products
Remediation
Metrics
References (4)
Change history (0)
No recorded changes yet.