CVE-2006-5223

Publication date

2006-10-11 01:00:00

Family

mitre

State

PUBLISHED

Description

PHP remote file inclusion vulnerability in includes/functions_user_viewed_posts.php in the Nivisec User Viewed Posts Tracker module 1.0 and earlier for phpBB allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.