Security Advisory
CVE-2006-1922
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
PHP remote file inclusion vulnerability in (1) about.php or (2) auth.php in TotalCalendar allows remote attackers to execute arbitrary PHP code via a URL in the inc_dir parameter.