RSA enVision 3.x and 4.x before 4 SP4 P3 allows remote attackers to read arbitrary files via unspecified vectors, related to an "arbitrary file retrieval vulnerability."
http://www.securitytracker.com/id?1025979
http://www.securityfocus.com/archive/1/519395/100/0/threaded