-- == -- == -- == -- == -- == -- == -- == -- == -- == -- Name: PHPTB Topic Board - Multiple PHP injection vulnerabilities Version <= 2.0 Homepage: htt://www.phptb.com/ Author: Filip Groszyński (VXSfx) Date: 17 August 2005 -- == -- == -- == -- == -- == -- == -- == -- == -- == -- Background: PHPTB Topic Borad is an open source portal system. However, an input validation flaw can cause malicious attackers to remote code execution on the web server. -------------------------------------------------------- Vulnerable code exist in ./classes/admin_o.php, ./classes/board_o.php, ./classes/dev_o.php, ./classes/file_o.php and ./classes/tech_o.php: Email: groszynskif gmail com -- == -- == -- == -- == -- == -- == -- == -- == -- == --