PilusCart versions 1.4.1 and prior suffer from a file disclosure vulnerability via local file inclusion.
View the template here CVE-2019-16123.yaml
References:
https://packetstormsecurity.com/files/154250/PilusCart-1.4.1-Local-File-Disclosure.html