CVE-2006-5078 - Essential Oak
Description
PHP remote file inclusion vulnerability in view/general.php in Kristian Niemi Polaring 00.04.03 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the _SESSION[dirMain] parameter.
Reference
http://www.securityfocus.com/bid/20183 http://sourceforge.net/forum/forum.php?forum_id=620481 https://exchange.xforce.ibmcloud.com/vulnerabilities/29138 https://www.exploit-db.com/exploits/2427