← Vulnerability feed

Vulnerability record · CVE-2005-0267 · published 2 May 2005

CVE-2005-0267: Flatnuke vulnerability

Flatnuke · Flatnuke

index.php in FlatNuke 2.5.1 allows remote attackers to create an administrator account via carriage returns and #10 in the url_avatar field, which is interpreted as a sensitive directive.

7.5 CVSS 2.0 High EPSS 1.7% · top 23.4%
7.5CVSS 2.0 base score
1.7%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
6References, 2 tagged exploit
16 Jun 2026Last modified by NVD

Description

index.php in FlatNuke 2.5.1 allows remote attackers to create an administrator account via carriage returns and #10 in the url_avatar field, which is interpreted as a sensitive directive.

AV:N/AC:L/Au:N/C:P/I:P/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2005-0267 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2005-4448Flatnuke vulnerabilityFlatNuke 2.5.6 verifies authentication credentials based on an MD5 checksum of the admin name and the hashed password rather than the plaintext passw…EPSS 2.8%7.5CVE-2005-1894Flatnuke code injection vulnerabilityDirect code injection vulnerability in FlatNuke 2.5.3 allows remote attackers to execute arbitrary PHP code by placing the code into the Referer head…EPSS 3.7%7.5CVE-2005-0268Flatnuke vulnerabilityDirect code injection vulnerability in FlatNuke 2.5.1 allows remote attackers to execute arbitrary PHP code by placing the code into the url_avatar f…EPSS 1.5%6.4CVE-2005-2815Flatnuke vulnerabilityprint.php in FlatNuke 2.5.6 allows remote attackers to obtain sensitive information (path disclosure on error) or cause a denial of service (resource…EPSS 1.8%6.4CVE-2005-1892Flatnuke vulnerabilityFlatNuke 2.5.3 allows remote attackers to cause a denial of service or obtain sensitive information via (1) a direct request to foot_news.php, which …EPSS 2.2%5.0CVE-2005-4208Flatnuke vulnerabilityDirectory traversal vulnerability in Flatnuke 2.5.6 allows remote attackers to access arbitrary files via a .. (dot dot) and null byte (%00) in the i…EPSS 8.1%5.0CVE-2005-2813Flatnuke vulnerabilityDirectory traversal vulnerability in FlatNuke 2.5.6 and possibly earlier allows remote attackers to read arbitrary files via ".." sequences and "%00"…EPSS 6.9%5.0CVE-2005-2537Flatnuke vulnerabilityFlatNuke 2.5.5 and possibly earlier versions allows remote attackers to obtain sensitive information via a direct request to structure.php.EPSS 1.5%

Source: NIST National Vulnerability Database (record CVE-2005-0267), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.