Looking for the vulnerability index of Invicti's legacy products?
phpBB Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2007-5173) - Vulnerability Database

phpBB Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2007-5173)

Description

PHP remote file inclusion vulnerability in includes/openid/Auth/OpenID/BBStore.php in phpBB Openid 0.2.0 allows remote attackers to execute arbitrary PHP code via a URL in the openid_root_path parameter.

References

Related Vulnerabilities