10
CVSSv2

CVE-2006-7136

Published: 07/03/2007 Updated: 11/10/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple PHP remote file inclusion vulnerabilities in PHP Poll Creator (phpPC) 1.04 and previous versions allow remote malicious users to execute arbitrary PHP code via a URL in the relativer_pfad parameter to (1) poll.php, (2) poll_kommentar.php, and (3) poll_sm.php, different vectors and version than CVE-2005-1755.

Vulnerable Product Search on Vulmon Subscribe to Product

phppc php poll creator

Exploits

phpPC 104 Multiples Remote File Inclusion Script : PHP Poll Creator Version : 104 Vendor URL : wwwphppcde Impact : Remote File Inclusion Discovered by : iss4m Contact : iss4m1@gmailcom Vulnerable code in pollphp -------------------------------- <?php if ($is_phppc_included != 1) { include "confi ...