Directory traversal vulnerability in include/processor.php in Greenwood PHP Content Manager 0.3.2 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the content_path parameter.Referenceshttp://www.exploit-db.com/exploits/9156https://exchange.xforce.ibmcloud.com/vulnerabilities/51737