PHP remote file inclusion vulnerability in admin.panoramic.php in the Panoramic Picture Viewer (companoramic) mambot (plugin) 1.0 for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfiglivesite parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.