CVE-2008-1876
PHP remote file inclusion vulnerability in index.php in VisualPic 0.3.1 allows remote attackers to execute arbitrary PHP code via a URL in the _CONFIG[files][functions_page] parameter.
Date published : 2008-04-17
https://www.exploit-db.com/exploits/5375
http://www.vupen.com/english/advisories/2008/1127/references