Multiple PHP remote file inclusion vulnerabilities in adminprint.php in PicturesPro Photo Cart 3.9 allow remote attackers to execute arbitrary PHP code via a URL in the (1) admin_folder and (2) path parameters.Referenceshttp://secunia.com/advisories/23037http://www.securityfocus.com/bid/21163https://www.exploit-db.com/exploits/2817http://www.vupen.com/english/advisories/2006/4659https://exchange.xforce.ibmcloud.com/vulnerabilities/30447