CVE-2012-4878: Flatnux
Medium severity, CVSS 5.0. EPSS: 8.8% chance of exploitation in the next 30 days.
Absolute path traversal vulnerability in controlcenter.php in FlatnuX CMS 2011 08.09.2 allows remote administrators to read arbitrary files via a full pathname in the dir parameter in a contents/Files action.
Affected products
- Flatnux Flatnux: version 2011-08-09-2 only
Published 2012-09-06. Last modified 2026-06-16.