PHP remote file inclusion vulnerability in functions_inc.php in VS-Gastebuch 1.5.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the gb_pfad parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.054
EPSS Ranking 89.8%