Debian Security Advisory 1324-1 – Kazuhiro Nishiyama found a vulnerability in hiki, a Wiki engine written in Ruby, which could allow a remote attacker to delete arbitrary files which are writable to the Hiki user, via a specially crafted session parameter.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/57347/dsa-1324-1.txt
Source: https://packetstormsecurity.com/files/57347/Debian-Linux-Security-Advisory-1324-1.html

