← Back

CVE-2004-1535

nvd nist
Published: Dec 31, 2004Modified: Apr 16, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

PHP remote file inclusion vulnerability in admin_cash.php for the Cash Mod module for phpBB allows remote attackers to execute arbitrary PHP code by modifying the phpbb_root_path parameter to reference a URL on a remote web server that contains the code.

Affected (16)

Products: Phpbb Group: Phpbb
1 product
Phpbb
Configuration A
16 vulnerable
Vulnerable SoftwareAffected Versions
Phpbb Group
Version 2.0.0
Version 2.0.10
Version 2.0.1
Version 2.0.2
Version 2.0.3
Version 2.0.4
Version 2.0.5
Version 2.0.6
Version 2.0.7
Version 2.0.8
Version 2.0.9
Version rc1
Version rc1_pre
Version rc2
Version rc3
Version rc4

References (6)

Timeline

No history available yet.