X-Scripts X-Poll (xpoll) 2.30 allows remote attackers to execute arbitrary PHP code by using admin/images/add.php to upload a PHP file, then access it.
References
Configurations
Information
Published : 2006-05-09 19:14
Updated : 2018-10-18 09:38
NVD link : CVE-2006-2281
Mitre link : CVE-2006-2281
JSON object : View
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
Products Affected
x-scripts
- x-poll