CVE-2006-5621

PHP remote file inclusion vulnerability in end.php in ask_rave 0.9 PR, and other versions before 0.9b, allows remote attackers to execute arbitrary PHP code via a URL in the footfile parameter.

Date published : 2006-10-31

http://www.securityfocus.com/bid/20758

http://rave.jk-digital.com/blog/2006/12/08/ask_rave-09b-released/