WordPress Plugin Theme Tuner tt-abspath Parameter Remote File Include - CVE-2012-0934
WordPress Plugin Theme Tuner is prone to a remote file include vulnerability because it fails to sufficiently sanitize user-supplied input. Exploiting this issue could allow an attacker to compromise the application and the underlying system other attacks are also possible. WordPress Plugin Theme Tuner version 0.7 is vulnerable prior versions may also be affected.