CVE-2009-4231
Directory traversal vulnerability in as/lib/plugins.php in SweetRice 0.5.3 and earlier allows remote attackers to include and execute arbitrary local files via .. (dot dot) in the plugin parameter.
Date published : 2009-12-08
http://packetstormsecurity.org/0911-exploits/sweetrice-rfilfi.txt
