Directory traversal vulnerability in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to read arbitrary files via a .. (dot dot) attack in an HTTPS request to the enrollment server.
https://exchange.xforce.ibmcloud.com/vulnerabilities/5066
http://download.nai.com/products/licensed/pgp/hf3pki10.txt
http://archives.neohapsis.com/archives/bugtraq/2000-07/0473.html