CVE-2007-3697
PHP remote file inclusion vulnerability in phpbb/sendmsg.php in FlashBB 1.1.8 and earlier allows remote attackers to execute arbitrary code via a URL in the phpbb_root_path parameter.
Date published : 2007-07-11
http://www.securityfocus.com/bid/24842
http://www.securityfocus.com/archive/1/473281/100/0/threaded