PHP remote file inclusion vulnerability in download.php in the Adam van Dongen Forum (com_forum) component (aka phpBB component) 1.2.4RC3 and previous versions for Mambo allows remote malicious users to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
adam van dongen phpbb component 1.2.4rc3 |
||
adam van dongen com forum 1.2.4rc3 |