BugTraq
PhpBB <= 2.0.20 Admin/Restore Database remote cmmnds xctn (works with admin sid) May 13 2006 12:10PM
rgod autistici org
an admin or whoever succeed to find admin sid is able to launch commands, advisory/poc exploit:

http://retrogod.altervista.org/phpbb_2020_admin_xpl.html

[ reply ]


 

Privacy Statement
Copyright 2010, SecurityFocus