EncapsBB is reported prone to a file include vulnerability. The problem presents itself specifically when an attacker passes the location of a remote or local script through the 'index_header.php' script. An attacker may leverage this issue to execute arbitrary server-side script code on an affected computer with the privileges of the Web server process. This may facilitate unauthorized access. EncapsBB version 0.3.2_fixed is reported prone to this issue. Other versions may be affected as well.
EncapsBB is reported prone to a file include vulnerability. The problem presents itself specifically when an attacker passes the location of a remote or local script through the 'index_header.php' script. An attacker may leverage this issue to execute arbitrary server-side script code on an affected computer with the privileges of the Web server process. This may facilitate unauthorized access. EncapsBB version 0.3.2_fixed is reported prone to this issue. Other versions may be affected as well.