EIP-2026-110969
PRE-CVEphpBB 3 - 'autopost bot mod 0.1.3' Remote File Inclusion
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-110969. PoCs published by Kacper.
AI-analyzed exploit summary The writeup describes a Remote File Include (RFI) vulnerability in phpBB 3 with the autopost bot mod (<= 0.1.3). The vulnerability arises from improper input validation in the `functions_lastrss_autopost.php` file, allowing an attacker to inject malicious code via the `phpbb_root_path` parameter.
Description
phpBB 3 - 'autopost bot mod 0.1.3' Remote File Inclusion
Exploits (1)
The writeup describes a Remote File Include (RFI) vulnerability in phpBB 3 with the autopost bot mod (<= 0.1.3). The vulnerability arises from improper input validation in the `functions_lastrss_autopost.php` file, allowing an attacker to inject malicious code via the `phpbb_root_path` parameter.