A vulnerability was identified in Jinzora, which may be exploited by attackers to compromise a vulnerable web server. This flaw is due to an input validation error when processing a specially crafted "include_path" parameter, which may be exploited by remote attackers to include malicious files and execute arbitrary commands with the privileges of the web server.
Vulnerable Products
Vulnerable Software: Jinzora version 2.0.1 and prior