PHP remote file inclusion vulnerability in language/lang_german/lang_main_album.php in phpBB Plus 1.53, and 1.53a before 20070922, allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter. exploitation requires register_globals to be enabled
Publication date: Fri, 21 Sep 2007 02:17:00 +0000