Unrestricted file upload vulnerability in forum_write.php in Maran PHP Forum allows remote attackers to upload and execute arbitrary PHP files via a trailing %00 in a filename in the page parameter.Referenceshttps://www.exploit-db.com/exploits/3775https://exchange.xforce.ibmcloud.com/vulnerabilities/33802http://www.securityfocus.com/bid/23614http://www.vupen.com/english/advisories/2007/1493http://secunia.com/advisories/24968