Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

FlatNuke Index.PHP Arbitrary File Upload Vulnerability

FlatNuke is prone to an arbitrary file-upload vulnerability because it fails to sufficiently sanitize user-supplied input.

Exploiting this issue could allow an attacker to execute arbitrary script code in the context of the affected webserver process. This may facilitate the compromise of the application; other attacks are possible.

FlatNuke 2.5.8 and prior versions are vulnerable; other versions may also be affected.







 

Privacy Statement
Copyright 2009, SecurityFocus