CVE-2006-6277
Directory traversal vulnerability in admin/FileServer.php in ContentServ 4.x allows remote attackers to read arbitrary files via a .. (dot dot) in the src parameter, a different vector than CVE-2005-3086.
Date published : 2006-12-04
http://www.securityfocus.com/bid/21369
http://www.securityfocus.com/archive/1/453130/100/0/threaded