CVE-2011-5130: Haudenschilt Family Connections CMS
Medium severity, CVSS 6.8. EPSS: 36.6% chance of exploitation in the next 30 days.
dev/less.php in Family Connections CMS (FCMS) 2.5.0 - 2.7.1, when register_globals is enabled, allows remote attackers to execute arbitrary commands via shell metacharacters in the argv[1] parameter.
Affected products
- Haudenschilt Family Connections CMS: version 2.5.0 only; version 2.5.1 only; version 2.5.2 only; version 2.5.3 only; version 2.5.4 only; version 2.6.0 only; …
Published 2012-08-30. Last modified 2026-06-16.