./sources/export.queries.php:471: $outstream = fopen($_POST['file'], "a");
(place php in item description)
./sources/admin.queries.php:1110: $fh = fopen($tmp_skfile, 'w');
(admin required)
./sources/views.queries.php:437: ORDER BY ".$_POST['order']." ".$_POST['direction']."
(admin required)
./sources/downloadFile.php:47: $fp = fopen($_SESSION['settings']['path_to_upload_folder'].'/'.$result['file'], 'rb');
./sources/kb.queries.php:62: $value = preg_replace('/%([0-9a-f]{2})/ie', 'chr(hexdec($1))', (string) $value);