CVE-2007-1024 | Marcello Vitagliano Meganoides News 1.1.1 include.php _SERVER[DOCUMENT_ROOT] file inclusion (EDB-29609 / XFDB-32546)
A vulnerability, which was classified as critical, was found in Marcello Vitagliano Meganoides News 1.1.1. Affected is an unknown function of the file include.php. The manipulation of the argument _SERVER[DOCUMENT_ROOT] results in file inclusion.
This vulnerability is known as CVE-2007-1024. It is possible to launch the attack remotely. Furthermore, an exploit is available.