Security Advisory
CVE-2009-4223
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
PHP remote file inclusion vulnerability in adm/krgourl.php in KR-Web 1.1b2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the DOCUMENT_ROOT parameter.