PHP remote file inclusion vulnerability in component/option,com_moskool/Itemid,34/admin.moskool.php in MamboXChange Moskool 1.5 allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.Referenceshttp://www.securityfocus.com/archive/1/441710/100/0/threadedhttp://www.securityfocus.com/bid/19245https://exchange.xforce.ibmcloud.com/vulnerabilities/28097http://securityreason.com/securityalert/1314