php-Charts contains a flaw that is triggered when the program fails to properly sanitize input passed via the wizard/url.php script before using it in an eval() call. This may allow a remote attacker to execute arbitrary PHP code.
Disclosure Timeline:
Disclosure Date :2013-01-16
Exploit Publish Date :2013-01-16