vendor:
Podcast Generator
by:
staker
7.5
CVSS
HIGH
Remote/Local Arbitrary File Inclusions
CWE
Product Name: Podcast Generator
Affected Version From: 1
Affected Version To: 1.2
Patch Exists: NO
Related CWE:
CPE: a:podcast_generator:podcast_generator:1.0
Platforms Tested:
Podcast Generator <= 1.2 GLOBALS[] Multiple Remote Vulnerabilities
The vulnerability allows for arbitrary file inclusions. It can be exploited by manipulating the GLOBALS[] parameter.
Mitigation:
Apply the latest patch or upgrade to a newer version of Podcast Generator.