CVE-2006-2137
PHP remote file inclusion vulnerability in master.php in OpenPHPNuke and 2.3.3 earlier allows remote attackers to execute arbitrary PHP code via a URL in the root_path parameter.
Date published : 2006-05-02
http://www.securityfocus.com/bid/17772
http://www.openphpnuke.com/system/article/index.php?opnparams=B3YBZAI3BWgEbFU0