CVE

Id
28520  
CVE No.
CVE-2007-5163  
Status
Candidate  
Description
** DISPUTED ** PHP remote file inclusion vulnerability in includes/functions/layout.php in Nexty 1.01.A Beta allows remote attackers to execute arbitrary PHP code via a URL in the rel parameter. NOTE: this issue is disputed by CVE because the applicable include is in a function that is not called on a direct request.  
Phase
Assigned (20070930)  
Votes
None (candidate not yet proposed)  
Comments