Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in index.php for FlatNuke 2.5.6 allows remote attackers to read arbitrary files via ".." sequences in the (1) user parameter in a profile operation or (2) quale parameter in a newtopic operation.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
FlatNuke Index.PHP 多个远程文件包含漏洞
Vulnerability Description
FlatNuke 是一个PHP 开发的内容管理系统,无须数据库支持,使用的是文本文件来保存内容。 FlatNuke 2.5.6的index.php中存在目录遍历漏洞,远程攻击者可以通过(1)profile操作中的user参数或(2)newtopic操作中的quale参数中的".."(参数中包含'..')序列,读取任意文件。
CVSS Information
N/A
Vulnerability Type
N/A