Filtered by vendor Flatnuke Subscriptions
Filtered by product Flatnuke Subscriptions
Total 22 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2005-3307 1 Flatnuke 1 Flatnuke 2025-04-03 N/A
Directory traversal vulnerability in index.php for FlatNuke 2.5.6 allows remote attackers to read arbitrary files via ".." sequences in the (1) user parameter in a profile operation or (2) quale parameter in a newtopic operation.
CVE-2005-3361 1 Flatnuke 1 Flatnuke 2025-04-03 N/A
Cross-site scripting (XSS) vulnerability in forum/index.php in FlatNuke 2.5.6 allows remote attackers to inject arbitrary web script or HTML via the nome parameter in a login operation, a variant of CVE-2005-3306.