CVE-2006-3396
PHP remote file inclusion vulnerability in galleria.html.php in Galleria Mambo Module 1.0 and earlier for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.
Date published : 2006-07-06
http://www.securityfocus.com/bid/18808
http://www.securityfocus.com/archive/1/439035/100/0/threaded