PHP remote file include vulnerability in help_text_vars.php in PHPGedView 3.3.7 and earlier allows remote attackers to execute arbitrary code via a URL in the PGV_BASE_DIRECTORY parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.246
EPSS Ranking 95.9%