Php Nuke · Php-Nuke · CVE-2006-4190
**Name of the Vulnerable Software and Affected Versions**
PHP-Nuke AutoHTML module (affected versions not specified)
**Description**
A directory traversal issue exists in the AutoHTML module for PHP-Nuke, allowing local users to include arbitrary files. This is achieved by using a .. (dot dot) in the `name` parameter for a modload operation.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.