CVE-2009-4220 | Raphael Mazoyer PointComma up to 3.53 pctemplate.php pcConfig[smartyPath] code injection (EDB-10220 / XFDB-54389)
A vulnerability was found in Raphael Mazoyer PointComma up to 3.53. It has been rated as critical. This issue affects some unknown processing of the file includes/classes/pctemplate.php. The manipulation of the argument pcConfig[smartyPath] leads to code injection.
The identification of this vulnerability is CVE-2009-4220. The attack may be initiated remotely. Furthermore, there is an exploit available.