CVE-2009-0678
images/captcha.php in RavenNuke 2.30 allows remote attackers to obtain sensitive information via an aFonts array parameter value that does not correspond to a valid font file, which reveals the installation path in an error message.
Date published : 2009-02-22
http://www.securityfocus.com/archive/1/500988/100/0/threaded
