Directory traversal vulnerability in Flatnuke 2.5.6 allows remote attackers to access arbitrary files via a .. (dot dot) and null byte (%00) in the id parameter of the read module.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Flatnuke | Flatnuke | 2.5.6 (including) | 2.5.6 (including) |