Disclosure: Multiple Software Remote File Inclusion

[This was originally disclosed on the VIM mail list. VulnDB IDs 90794, 90795, 90796. This was the result of watching Apache logs on attrition.org and observing a wide variety of RFI attacks. I started comparing some of the scripts being attempted with OSVDB and noticed some were not found. That means these were essentially 0days being exploited in the wild.]

Quick searches didn’t find these in OSVDB. I haven’t had time to check the
