CVE-2006-5570
Directory traversal vulnerability in /scripts/cruise/cws.exe in CruiseWorks 1.09c and 1.09d allows remote attackers to read arbitrary files via a .. (dot dot) in the doc parameter.
Date published : 2006-10-27
http://www.securityfocus.com/bid/20698
http://www.securityfocus.com/archive/1/449572/100/0/threaded