Description
dev/less.php in Family Connections CMS (FCMS) 2.5.0 - 2.7.1, when register_globals is enabled, allows remote attackers to execute arbitrary commands via shell metacharacters in the argv[1] parameter.
Remediation
References
Related Vulnerabilities
Lighttpd Other Vulnerability (CVE-2007-3950)
IBM WebSEAL CVE-2018-1813 Vulnerability (CVE-2018-1813)
WordPress Plugin Transposh WordPress Translation Multiple Vulnerabilities (1.0.8.1)
Microsoft SQL Server Other Vulnerability (CVE-2002-0643)
WordPress Plugin Simple Share Buttons Adder Multiple Vulnerabilities (4.4)