Multiple PHP remote file inclusion vulnerabilities in Madoa Poll 1.1 allow remote attackers to execute arbitrary PHP code via the Madoa parameter to (1) index.php, (2) vote.php, and (3) admin.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Aplomb_poll | Global_centre | 1.1 (including) | 1.1 (including) |