CVE-2006-4365
VistaBB <2.0.33 - RCE
Title source: llmDescription
Multiple PHP remote file inclusion vulnerabilities in VistaBB 2.0.33 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter in (1) includes/functions_mod_user.php or (2) includes/functions_portal.php.
Exploits (1)
References (8)
Scores
EPSS
0.1652
EPSS Percentile
94.9%
Details
Status
published
Products (1)
vistabb/vistabb
< 2.0.33
Published
Aug 26, 2006
Tracked Since
Feb 18, 2026