PHP remote file inclusion vulnerability in showhits.php3 for PowerPhlogger (PPhlogger) 2.0.9 through 2.2.2 allows remote attackers to execute arbitrary PHP code via the rel_path parameter.
| Software | From | Fixed in |
|---|---|---|
| powerphlogger / powerphlogger | 2.0.9 | 2.0.9.x |
| powerphlogger / powerphlogger | 2.2.2a | 2.2.2a.x |
| powerphlogger / powerphlogger | 2.2.1 | 2.2.1.x |