CVE-2006-4558
DeluxeBB 1.06 and earlier, when run on the Apache HTTP Server with the mod_mime module, allows remote attackers to execute arbitrary PHP code by uploading files with double extensions via the fileupload parameter in a newthread action in newpost.php.
Date published : 2006-09-05
http://archives.neohapsis.com/archives/bugtraq/2006-05/0318.html