Directory traversal vulnerability in index.php in ModX 0.9.1 allows remote attackers to read arbitrary files via a .. (dot dot) sequence and trailing NULL (%00) byte in the id parameter. To address this issue, the vendor has released a patch available at the following location:
http://modxcms.com/forums/index.php/topic,3982.0.html
Publication date: Tue, 18 Apr 2006 15:02:00 +0000