|
LMS Welcome.PHP Remote File Include Vulnerability
LMS is prone to a remote file-include vulnerability because it fails to sufficiently sanitize user-supplied input. An attacker can exploit this issue to execute arbitrary PHP code in the context of the webserver process. This may result in a compromise of the application and the underlying system; other attacks are also possible. This issue affects version 1.8.9; other versions may also be vulnerable. |
|
Privacy Statement |