PHP remote file inclusion vulnerability in admin/admin_topic_action_logging.php in Chris Smith Minerva Build 238 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Minerva | Minerva | 2.0.8 (including) | 2.0.8 (including) |
Minerva | Minerva | 2.0.19 (including) | 2.0.19 (including) |
Minerva | Minerva | 2.0.21 (including) | 2.0.21 (including) |