The PHPinfo file can contain sensitive information about the server, including the database credentials and server path. This information can be valuable to an attacker, as it can be used to launch attacks such as SQL injection or remote code execution.
To know more about this bug, read the below mentioned blog