Vulnerabilities (CVE)

Filtered by vendor Flatnuke Subscribe
Total 22 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-3307 1 Flatnuke 1 Flatnuke 2024-02-04 5.0 MEDIUM N/A
Directory traversal vulnerability in index.php for FlatNuke 2.5.6 allows remote attackers to read arbitrary files via ".." sequences in the (1) user parameter in a profile operation or (2) quale parameter in a newtopic operation.
CVE-2005-3361 1 Flatnuke 1 Flatnuke 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in forum/index.php in FlatNuke 2.5.6 allows remote attackers to inject arbitrary web script or HTML via the nome parameter in a login operation, a variant of CVE-2005-3306.