PHP remote file inclusion vulnerability in player/includes/common.php in Teake Nutma Foing, as modified in Fully Modded phpBB (phpbbfm) 2021.4.40, allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Fully_modded_phpbb | Fully_modded_phpbb | 2021.4.40 (including) | 2021.4.40 (including) |