PHP remote file inclusion vulnerability in core/core.php in EncapsCMS 0.3.6 allows remote attackers to execute arbitrary PHP code via a URL in the root parameter.
- http://securityreason.com/securityalert/1848
- https://www.exploit-db.com/exploits/2750
No PoCs found on GitHub currently.