Directory traversal vulnerability in codebrowserpntm.php in pnTresMailer 6.0.3 allows remote attackers to read arbitrary files via a .. (dot dot) in the filetodownload parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.034
EPSS Ranking 87.1%