Security Advisory
CVE-2006-7063
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Directory traversal vulnerability in profile.php in TinyPHPforum 3.6 and earlier allows remote attackers to include and execute arbitrary files via ".." sequences in the uname parameter.