Description - PHP Code Execution in oaBoard

PHP Code Execution found in oaBoard script.

Exploit
Available
Solution
Not available - check vendor's website

Vulnerable scripts:
forum.php

Variables $inc and $inc_stat isn't initialized before being used in the include(). This can be used to execute arbitrary PHP code.

Condition: register_globals = on

Order Source Code Testing

Protect your site or web application by source code analysis of your website made by Aliaksandr Hartsuyeu.The order will be done by specialists in website security.