PHP remote file inclusion vulnerability in includes/functions_cms.php in THoRCMS 1.3.1 allows remote attackers to execute arbitrary PHP code via the phpbb_root_path parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.164
EPSS Ranking 94.6%