MyDMS contains a flaw that allows a remote attacker to access arbitrary files outside of the web path. The issue is due to the MyDMS not properly sanitizing user input, specifically traversal style attacks (../../). No further details have been provided.
Upgrade to version 1.4.3 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.