CVE-2006-2002
PHP remote file inclusion vulnerability in stats.php in MyGamingLadder 7.0 allows remote attackers to execute arbitrary PHP code via a URL in the dir[base] parameter.
Date published : 2006-04-25
http://www.securityfocus.com/bid/17657
http://www.securityfocus.com/archive/1/431902/100/0/threaded