Status2k allows remote attackers to obtain configuration information via a phpinfo action in a request to status/index.php, which calls the phpinfo function.Referenceshttp://packetstormsecurity.com/files/127719/Status2k-XSS-SQL-Injection-Command-Execution.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/95114