6.8
CVSSv2

CVE-2009-3312

Published: 23/09/2009 Updated: 19/09/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in php/init.poll.php in phpPollScript 1.3 and previous versions, when register_globals is enabled, allows remote malicious users to execute arbitrary PHP code via a crafted URL in the include_class parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

tomex phppollscript

Exploits

######################################################################## #phpPollScript <= 13 Remote File Include Vulnerability #Download Script : downloadtomexorg/phpPollScriptv13bzip #Author : cr4wl3r #Contact : cr4wl3r[4t]linuxmail[dot]org #Location : Gorontalo - INDONESIA ######### ...