Vulnerabilities (CVE)

Filtered by vendor Flatnuke Subscribe
Filtered by product Flatnuke
Total 22 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-0267 1 Flatnuke 1 Flatnuke 2025-04-03 7.5 HIGH N/A
index.php in FlatNuke 2.5.1 allows remote attackers to create an administrator account via carriage returns and #10 in the url_avatar field, which is interpreted as a sensitive directive.
CVE-2005-1896 1 Flatnuke 1 Flatnuke 2025-04-03 5.0 MEDIUM N/A
Directory traversal vulnerability in thumb.php in FlatNuke 2.5.3 allows remote attackers to read arbitrary images or obtain the installation path via the image parameter.