Hello team!

I have found a local file inclusion bug on your website. with which I'm able to
get the passwd and pwd.db file.

## Steps to reproduce

1. Visit https://ftp2.ru.freebsd.org/etc/
2. Now you have options to download passwd and pwd.db file.

# Impact

The server have the vulnerability of Local file inclusion

## Mitigation

- Login to the web server.
- Locate the Nginx configuration template (see "Locating the Nginx
configuration file")
- Add the deny directive (see "The Deny Directive") to the server block of your
site's configuration
- Save your changes and restart Nginx

