phpCMS “file” File Disclosure

Application: phpCMS
Affected Version: 1.22 and other versions.
Vendor’s URL: http://sourceforge.net/projects/phpcms/
Bug Type: Information Disclosure
Risk Level: Critical

Solution:
Edit the source code to ensure that input is properly verified.