CVE-2007-0680

Phpbb Tweaked <3 - RCE

Title source: llm

Description

PHP remote file inclusion vulnerability in includes/functions.php in Phpbb Tweaked 3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Mehmet Ince · textwebappsphp
https://www.exploit-db.com/exploits/3235

Scores

EPSS 0.1218
EPSS Percentile 93.7%

Classification

Status draft

Affected Products (2)

phpbb_tweaked/phpbb_tweaked < 3
phpbb_tweaked/phpbb_tweaked

Timeline

Published Feb 03, 2007
Tracked Since Feb 18, 2026