PHPBB Spider Friendly Module PHPBB_ROOT_PATH Parameter Remote File Include Vulnerability

phpBB Spider Friendly is prone to a remote file-include vulnerability.

A remote attacker may exploit this issue to execute server-side script code, which may lead to a remote compromise of the underlying computer. This would occur in the context of the affected webserver. Other attacks may be possible as well.

phpBB Spider Friendly 1.3.10 is reported vulnerable; other versions may be affected as well.


 

Privacy Statement
Copyright 2010, SecurityFocus