CVE-2007-5774
index.php in the File Manager module in Flatnuke 3 allows remote attackers to obtain sensitive information via an invalid argumentname parameter in a disc op action, which reveals the path in an error message.
- Affected products
- Flatnuke
- flatnuke3
- All versions
- Fix
- Available
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 2.6% (84th percentile)
- Weakness
- CWE-200
- NVD status
- Modified
- Published
- 2007-11-01
CVE-2007-5774 at NVD
1 known exploit for CVE-2007-5774
Proof-of-concept code and exploit modules indexed by Sploitus