suPHP prior to 0.7.2 source-highlighting feature allows security bypass which could lead to arbitrary code execution
suphp suphp