Security Advisory
CVE-2007-3236
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
PHP remote file inclusion vulnerability in footer.php in the Horoscope 1.0 module for XOOPS allows remote attackers to execute arbitrary PHP code via a URL in the xoopsConfig[root_path] parameter.