Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
flatnux flatnux vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2012-4892
Multiple cross-site scripting (XSS) vulnerabilities in FlatnuX CMS 2012-03.08 and previous versions allow remote malicious users to inject arbitrary web script or HTML via the (1) title_en, (2) summary_en, or (3) body_en parameter in a submitnews action to the news module, a diff...
Flatnux Flatnux 2009-01-27
Flatnux Flatnux
Flatnux Flatnux 2008-12-11
Flatnux Flatnux 2011-08-09-2
Flatnux Flatnux 2009-02-04
6.8
CVSSv2
CVE-2012-4877
Cross-site request forgery (CSRF) vulnerability in controlcenter.php in FlatnuX CMS 2011 08.09.2 and previous versions allows remote malicious users to hijack the authentication of administrators for requests that add user accounts.
Flatnux Flatnux
Flatnux Flatnux 2008-12-11
Flatnux Flatnux 2009-02-04
Flatnux Flatnux 2009-01-27
1 EDB exploit
4.3
CVSSv2
CVE-2012-4890
Multiple cross-site scripting (XSS) vulnerabilities in FlatnuX CMS 2011 08.09.2 and previous versions allow remote malicious users to inject arbitrary web script or HTML via a (1) comment to the news, (2) title to the news, or (3) the folder names in a gallery.
Flatnux Flatnux 2009-02-04
Flatnux Flatnux 2009-01-27
Flatnux Flatnux 2008-12-11
Flatnux Flatnux
5.1
CVSSv2
CVE-2009-0572
PHP remote file inclusion vulnerability in include/flatnux.php in FlatnuX CMS (aka Flatnuke3) 2009-01-27 and 2009-02-04, when register_globals is enabled and magic_quotes_gpc disabled, allows remote malicious users to execute arbitrary PHP code via a URL in the _FNROOTPATH parame...
Flatnux Flatnux 2009-01-27
Flatnux Flatnux 2009-02-04
1 EDB exploit
4.3
CVSSv2
CVE-2008-5759
Cross-site scripting (XSS) vulnerability in FlatnuX CMS (aka Flatnuke3) 2008-12-11 allows remote malicious users to inject arbitrary web script or HTML via the name parameter in an updaterecord action to index.php in the 08_Files module. NOTE: the provenance of this information i...
Flatnux Flatnux 2008-12-11
1 EDB exploit
4.3
CVSSv2
CVE-2008-5761
Multiple cross-site scripting (XSS) vulnerabilities in FlatnuX CMS (aka Flatnuke3) 2008-12-11 allow remote malicious users to inject arbitrary web script or HTML via (1) the mod parameter to the default URI; (2) the foto parameter to photo.php in the 05_Foto module; or (3) the na...
Flatnux Flatnux 2008-12-11
1 EDB exploit
5
CVSSv2
CVE-2012-4878
Absolute path traversal vulnerability in controlcenter.php in FlatnuX CMS 2011 08.09.2 allows remote administrators to read arbitrary files via a full pathname in the dir parameter in a contents/Files action.
Flatnux Flatnux 2011-08-09-2
1 EDB exploit
7.5
CVSSv2
CVE-2007-5771
Flatnuke 3 (aka FlatnuX) allows remote malicious users to obtain administrative access via a myforum%00 cookie.
Flatnuke3 Flatnuke3
1 EDB exploit
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
IMAP
CVE-2024-4367
server-side request forgery
information disclosure
CVE-2024-34342
CVE-2024-4281
CVE-2024-3507
CVE-2024-25560
CVE-2024-34574
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started