The vulnerability let the attacker run malicious code through file inclusion.
Uploading files to the server.
Thank you Ebay's security team
Big thanks to Ebay's security team for fixing this issue and for the opportunity to responsibly report security risks.
Ebay's Acknowledgement: http://pages.ebay.com/
securitycenter/ ResearchersAcknowledgement. html