Xivo version 1.2 suffers from an arbitrary file download vulnerability that has root level privileges.
90bc356292d4e2c8b7ec5bea519259471c2c2b2e02033c5c7c17b56a1dfa0893
Secunia Security Advisory - Francis Provencher has discovered a vulnerability in XiVO, which can be exploited by malicious people to conduct cross-site request forgery attacks.
937211a009d1167d11021df75ab2d1bf4888f0f5a26d6592dba5d81f5285c09b