cpe:/a:klinza:klinza_professional_cms:5.0.1 CVE-2009-4216 2009-12-07T12:30:00.343-05:00 2017-08-16T21:31:29.383-04:00 9.3 NETWORK MEDIUM NONE COMPLETE COMPLETE COMPLETE http://nvd.nist.gov 2009-12-08T08:57:00.000-05:00 BID 37127 MISC http://packetstormsecurity.org/0911-exploits/klinza-lfi.txt XF klinza-menulast-file-include(54429) Directory traversal vulnerability in funzioni/lib/menulast.php in klinza professional cms 5.0.1 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the LANG parameter.