"evaluatorSolution":"Successful exploitation requires that \"register_globals\" is enabled.",
"descriptions":[
{
"lang":"en",
"value":"PHP remote file inclusion vulnerability in manager/media/browser/mcpuk/connectors/php/Commands/Thumbnail.php in Modx CMS 0.9.2.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the base_path parameter. NOTE: it is possible that this is a vulnerability in FCKeditor."
},
{
"lang":"es",
"value":"Vulnerabilidad de inclusi\u00f3n remota de archivo en PHP en manager/media/browser/mcpuk/connectors/php/Commands/Thumbnail.php en Modx CMS 0.9.2.1 y anteriores permite a atacantes remotos ejecutar c\u00f3digo PHP de su elecci\u00f3n mediante una URL en el par\u00e1metro base_path. NOTA: es posible que esta sea una vulnerabilidad en FCKeditor."