CVE-2003-0559

mainfile.php in phpforum 2 RC-1, and possibly earlier versions, allows remote attackers to execute arbitrary PHP code by modifying the MAIN_PATH parameter to reference a URL on a remote web server that contains the code.

Scoring

CVSS base score
0.03
EPSS probability
0.75%
Published
2003-07-15
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs