Admin of the file webmain.cgi of the component Remote Management. The manipulation of the argument FILE_PATH leads to cross-site request forgery.This vulnerability is known as CVE-2010-4507. The attack can be launched remotely. Furthermore, there is an exploit available.
SOCIAL SHARE CARD GENERATOR