FlatNuke 2.5.3 allows remote attackers to obtain sensitive information via invalid parameters to certain scripts, which leaks the web document root in an error message.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Flatnuke | Flatnuke | 2.5.3 (including) | 2.5.3 (including) |