Description
PHP remote file inclusion vulnerability in the fetchView function in the Mage_Core_Block_Template_Zend class in Magento Community Edition (CE) 1.9.1.0 and Enterprise Edition (EE) 1.14.1.0 allows remote administrators to execute arbitrary PHP code via a URL in unspecified vectors involving the setScriptPath function. NOTE: it is not clear whether this issue crosses privilege boundaries, since administrators might already have privileges to include arbitrary files.
Remediation
References
Related Vulnerabilities
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2012-1155)
PHP Incorrect Calculation of Buffer Size Vulnerability (CVE-2008-0599)
WordPress Plugin Stock in & out Cross-Site Scripting (1.0.4)
WordPress Plugin SiteGuard WP Information Disclosure (1.7.6)
Telerik Web UI Improper Input Validation Vulnerability (CVE-2017-11357)