2002-03-15 05:00:00
mitre
PUBLISHED
generate.cgi in SIX-webboard 2.01 and before allows remote attackers to read arbitrary files via a dot dot (..) in the content parameter.