CVE-2014-1632
htdocs/setup/index.php in Eventum before 2.3.5 allows remote attackers to inject and execute arbitrary PHP code via the hostname parameter.
Date published : 2018-01-31
http://www.securityfocus.com/archive/1/530891/100/0/threaded
http://bazaar.launchpad.net/~eventum-developers/eventum/trunk/revision/4665