PHP remote file inclusion vulnerability in index.php in GNUBoard 3.39 and earlier allows remote attackers to execute arbitrary PHP code by modifying the doc parameter to reference a URL on a remote web server that contains the code.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gnuboard | Sir | 3.37 | 3.37 |
Gnuboard | Sir | 3.31 | 3.31 |
Gnuboard | Sir | 3.32 | 3.32 |
Gnuboard | Sir | 3.39 | 3.39 |
Gnuboard | Sir | 3.38 | 3.38 |
Gnuboard | Sir | 3.34 | 3.34 |
Gnuboard | Sir | 3.35 | 3.35 |
Gnuboard | Sir | 3.33 | 3.33 |
Gnuboard | Sir | 3.30 | 3.30 |
Gnuboard | Sir | 3.36 | 3.36 |