Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:4658
HistoryJul 25, 2017 - 8:04 a.m.

Local File Inclusion

2017-07-2508:04:33
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13

EPSS

0.923

Percentile

99.0%

PHPMailer is vulnerable to local file inclusion. The vulnerability is possible because user supplied relative image URLs are treated as / absolute local file paths and are directly passed to the msgHTML() method.