JD-WordPress is a blogging component for the Joomla! content manager. The component is exposed to a remote file include issue because it fails to sufficiently sanitize user-supplied input to the "mosConfig_absolute_path" parameter of the "wp-feed.php" script. JD-WordPress version 2.0 RC2 is affected by this issue.
Ref:
http://www.securityfocus.com/bid/36730
09.44.90 - CVE: Not Available
Platform: Web Application