WAnewsletter may allow inclusion of malicious remote files. This is due to remote users being able to influence the include path of external files referenced by the 'db_type.php' script. Successful exploitation may allow for execution of arbitrary PHP code in the security context of the webserver process.
WAnewsletter may allow inclusion of malicious remote files. This is due to remote users being able to influence the include path of external files referenced by the 'db_type.php' script. Successful exploitation may allow for execution of arbitrary PHP code in the security context of the webserver process.