CVE-2003-1179

Advanced Poll 2.0.2 - Remote File Inclusion via include_path or base_path Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2003-1179. PoCs published by Solpot.

AI-analyzed exploit summary The exploit describes a remote file inclusion vulnerability in Advanced Poll 2.02 due to improper input sanitization in the 'base_path' parameter. An attacker can execute arbitrary remote files by manipulating the parameter in the 'common.inc.php' script.

Description

Multiple PHP remote file inclusion vulnerabilities in Advanced Poll 2.0.2 allow remote attackers to execute arbitrary PHP code via the include_path parameter in (1) booth.php, (2) png.php, (3) poll_ssi.php, or (4) popup.php, the (5) base_path parameter to common.inc.php.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Solpot · textwebappsphp
https://www.exploit-db.com/exploits/28253

The exploit describes a remote file inclusion vulnerability in Advanced Poll 2.02 due to improper input sanitization in the 'base_path' parameter. An attacker can execute arbitrary remote files by manipulating the parameter in the 'common.inc.php' script.

Classification
Writeup 80%
Attack Type
Rce
Complexity
Trivial
Reliability
Theoretical
Target: Advanced Poll 2.02
No auth needed
Prerequisites: Network access to the target application · Ability to host a malicious file on a remote server
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (10)

Core 10
Core References
Exploit mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/342493
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/440780/100/0/threaded
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/19105
Various Sources x_refsource_misc
http://www.solpotcrew.org/adv/solpot-adv-02.txt
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/8890
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/13514
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/10068
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/3291
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/28988

Scores

EPSS 0.0469
EPSS Percentile 90.6%

Details

Status published
Products (3)
advanced_poll/advanced_poll 2.0.0
advanced_poll/advanced_poll 2.0.1
advanced_poll/advanced_poll 2.0.2
Published Dec 31, 2003
Tracked Since Feb 18, 2026