PHP remote file inclusion vulnerability in index/main.php in Aztek Forum 4.00 allows remote authenticated administrators to execute arbitrary PHP code via a URL in the PF[top_url] parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Aztek_forum | Aztek_forum | 4.0 (including) | 4.0 (including) |