CVE-2007-0845

Advanced Poll <2.0.5-dev - Auth Bypass

Title source: llm

Description

admin/index.php in Advanced Poll 2.0.0 through 2.0.5-dev allows remote attackers to bypass authentication and gain administrator privileges by obtaining a valid session identifier and setting the uid parameter to 1.

Exploits (1)

exploitdb WORKING POC VERIFIED
by diwou · perlwebappsphp
https://www.exploit-db.com/exploits/3282

Scores

EPSS 0.0615
EPSS Percentile 90.8%

Details

Status published
Products (4)
advanced_poll/advanced_poll 2.0.2
advanced_poll/advanced_poll 2.0.3
advanced_poll/advanced_poll 2.0.4
advanced_poll/advanced_poll 2.0.5
Published Feb 08, 2007
Tracked Since Feb 18, 2026