An attacker can exploit this issue to inject and execute arbitrary malicious PHP code in the context of the affected application. This may facilitate a compromise of the application and the underlying system.
Piwik versions 1.2, 1.3, and 1.4 are vulnerable.
Vendor Status:
Currently we are not aware of any vendor-supplied patches