Directory Traversal vulnerability in FME Modules customfields v.2.2.7 and before allows a remote malicious user to obtain sensitive information via the Custom Checkout Fields, Add Custom Fields to Checkout parameter of the ajax.php