CVE-2007-2287
PHP remote file inclusion vulnerability in accept.php in comus 2.0 Final allows remote attackers to execute arbitrary PHP code via a URL in the DOCUMENT_ROOT parameter.
Date published : 2007-04-26
http://www.securityfocus.com/bid/23661
http://www.securityfocus.com/archive/1/466870/100/0/threaded