CVE-2005-4163
Directory traversal vulnerability in captcha.php in Captcha PHP 0.9 allows remote attackers to read arbitrary files via the _tcf parameter.
Date published : 2005-12-11
http://freshmeat.net/projects/captchaphp/?branch_id=57290&release_id=206985