CGIScript.net csPassword.cgi stores .htpasswd files under the web document root, which could allow remote authenticated users to download the file and crack the passwords of other users.
https://euvd.enisa.europa.eu/vulnerability/EUVD-2002-0908
http://www.securityfocus.com/bid/4885