CVE-2006-3537
PHP remote file inclusion vulnerability in index.php in Randshop before 1.2 allows remote attackers to execute arbitrary PHP code via the dateiPfad parameter, a different vector than CVE-2006-3375.
Date published : 2006-07-12
http://www.securityfocus.com/bid/18865
http://www.securityfocus.com/archive/1/439750/100/0/threaded