Description
Inclusion of Functionality from Untrusted Control Sphere, Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ArkSigner Software and Hardware Inc. AcBakImzala allows PHP Local File Inclusion.This issue affects AcBakImzala: before v5.1.4.
Problem types
CWE-829 Inclusion of Functionality from Untrusted Control Sphere
Product status
Any version before v5.1.4
Credits
Barış BAYDUR
Emir KARATAŞ
References
www.usom.gov.tr/bildirim/tr-25-0356