PHP remote file inclusion vulnerability in admin.joomlaflashfun.php in the Flash Fun! (com_joomlaflashfun) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parameter.Referenceshttp://www.securityfocus.com/bid/25680https://www.exploit-db.com/exploits/4415https://exchange.xforce.ibmcloud.com/vulnerabilities/36638http://secunia.com/advisories/26799