FlatNuke 2.5.3 allows remote attackers to obtain sensitive information via invalid parameters to certain scripts, which leaks the web document root in an error message.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Flatnuke |
Flatnuke |
2.5.3 (including) |
2.5.3 (including) |
References