PHP remote file inclusion vulnerability in frontpage.php in Dan Jensen Travelsized CMS 0.4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the setup_folder parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Travelsized_cms | Dan_jensen | * | 0.4 (including) |