PHP remote file inclusion vulnerability in fsl2/objects/fs_form_links.php in faceStones Personal 2.0.42 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[fsinit][objpath] parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Facestones | Facestones | * | personal_2.0.42 (including) |