Security Advisory

CVE-2005-2813

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2005-09-07 04:00:00
Last updated 2024-08-07 22:45:02
Assigner mitre
State PUBLISHED

Description

Directory traversal vulnerability in FlatNuke 2.5.6 and possibly earlier allows remote attackers to read arbitrary files via ".." sequences and "%00" (trailing null byte) characters in the id parameter to the read mod in index.php.