Security Advisory
CVE-2006-0945
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
PHP remote file include vulnerability in admin/index.php in Archangel Weblog 0.90.02 allows remote authenticated administrators to execute arbitrary PHP code via a URL ending in a NULL (%00) in the index parameter.