PHP remote file inclusion vulnerability in index/main.php in Aztek Forum 4.00 allows remote authenticated administrators to execute arbitrary PHP code via a URL in the PF[top_url] parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Aztek_forum | Aztek_forum | 4.0 (including) | 4.0 (including) |