Security Advisory
CVE-2017-10968
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
In FineCMS through 2017-07-07, application\core\controller\template.php allows remote PHP code execution by placing the code after "<?php" in a route=template request.