CVE-2010-0975
PHP remote file inclusion vulnerability in external.php in PHPCityPortal allows remote attackers to execute arbitrary PHP code via a URL in the url parameter.
Date published : 2010-03-16
http://www.exploit-db.com/exploits/11678
http://packetstormsecurity.org/1003-exploits/phpcityportal-sqlrfi.txt