PHP remote file inclusion vulnerability in src/ark_inc.php in e-Ark 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the cfg_pear_path parameter. Successful exploitation requires that "register_globals" is enabled.
Publication date: Sat, 25 Nov 2006 00:07:00 +0000