FlatNuke 2.5.3 allows remote attackers to obtain sensitive information via invalid parameters to certain scripts, which leaks the web document root in an error message.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.029
EPSS Ranking 85.3%