Directory traversal vulnerability in Flatnuke 2.5.6 allows remote attackers to access arbitrary files via a .. (dot dot) and null byte (%00) in the id parameter of the read module.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Flatnuke | Flatnuke | 2.5.6 (including) | 2.5.6 (including) |