CVE-2008-2220 | Interact Learning Community Environment 2.4.1 lib.inc.php CONFIG[BASE_PATH] code injection (EDB-5526 / XFDB-42113)
A vulnerability, which was classified as critical, was found in Interact Learning Community Environment 2.4.1. Affected is an unknown function in the library modules/scorm/lib.inc.php. The manipulation of the argument CONFIG[BASE_PATH] leads to code injection.
This vulnerability is traded as CVE-2008-2220. It is possible to launch the attack remotely. Furthermore, there is an exploit available.