Directory traversal vulnerability in GNU Gnump3d before 2.9.8 has unknown impact via "CGI parameters, and cookie values".
http://www.vupen.com/english/advisories/2005/2489
http://www.securityfocus.com/bid/15496
http://www.novell.com/linux/security/advisories/2005_28_sr.html
http://www.gnu.org/software/gnump3d/ChangeLog
http://www.gentoo.org/security/en/glsa/glsa-200511-16.xml
http://www.debian.org/security/2005/dsa-901
http://secunia.com/advisories/17656