PHP remote file inclusion vulnerability in index.php in Knusperleicht Shoutbox 4.4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the sb_include_path parameter.
| Software | From | Fixed in |
|---|---|---|
| knusperleicht / shoutbox | 3.0.2 | 3.0.2.x |
| knusperleicht / shoutbox | - | 4.4.x |