Early Access — Mondoo Vulnerability Intelligence is currently in preview.
FlatNuke 2.5.3 allows remote attackers to cause a denial of service or obtain sensitive information via (1) a direct request to foot_news.php, which triggers an infinite loop, or (2) direct requests to unknown scripts, which reveals the web document root in an error message.
Exploitability
AV:NAC:LAu:NImpact
C:PI:NA:P6.4/AV:N/AC:L/Au:N/C:P/I:N/A:P