CVE-2007-3371 | Powl 0.94 Widgets htmledit.php _POWL[installPath] file inclusion (EDB-4090 / XFDB-35005)
A vulnerability was found in Powl 0.94. It has been classified as critical. This affects an unknown part of the file plugins/widgets/htmledit/htmledit.php of the component Widgets. The manipulation of the argument _POWL[installPath] leads to file inclusion.
This vulnerability is uniquely identified as CVE-2007-3371. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.