CVE-2009-1089
Absolute path traversal vulnerability in upload.php in Rapidleech rev.36 and earlier allows remote attackers to read arbitrary files via a base64-encoded absolute path in the filename parameter.
Date published : 2009-03-25
http://www.securityfocus.com/bid/34119
http://www.securityfocus.com/archive/1/501854/100/0/threaded