Directory traversal vulnerability in textview.php in Anton Vlasov DoSePa 1.0.4 allows remote attackers to read arbitrary files via a .. (dot dot) sequence or absolute file path in the file parameter.
https://www.exploit-db.com/exploits/2795
https://exchange.xforce.ibmcloud.com/vulnerabilities/30349