Security Advisory
CVE-2005-0630
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
sendpm.php in PBLang 4.63 allows remote authenticated users to read arbitrary files via a full pathname in the orig parameter.