PHP remote file inclusion vulnerability in the get_file function in upload/admin2/controller/report_logs.php in AlegroCart 1.2.8 allows remote administrators to execute arbitrary PHP code via a URL in the file_path parameter to upload/admin2.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2017-09-11T20:00:00Z
Updated: 2024-09-16T16:57:40.565Z
Reserved: 2017-09-11T00:00:00Z
Link: CVE-2015-9227
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-09-11T20:29:00.610
Modified: 2024-11-21T02:40:05.880
Link: CVE-2015-9227
Redhat
No data.