Class: Input Validation Error
Vulnerable: Comdev Comdev eCommerce 3.0

The wce.download.php script (present in two locations) can be passed a "download" http request parameter to download an arbitrary file on the vulnerable server.

Example:

http://www.vulnerable.com/oneadmin/f.../../config.php