CVE-2006-5387
PHP remote file inclusion vulnerability in mods/iai/includes/constants.php in the PlusXL 20_272 and earlier phpBB module allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.
Date published : 2006-10-18
http://www.securityfocus.com/bid/20315
http://www.securityfocus.com/archive/1/448581/100/0/threaded
