← Vulnerability feed

Vulnerability record · CVE-2003-1181 · published 25 October 2003

CVE-2003-1181: Advanced poll vulnerability

Advanced Poll · Advanced Poll

Advanced Poll 2.0.2 allows remote attackers to obtain sensitive information via an HTTP request to info.php, which invokes the phpinfo() function.

5.0 CVSS 2.0 Medium EPSS 7.6% · top 5.6%
5.0CVSS 2.0 base score
7.6%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
12References, 4 tagged exploit
16 Jun 2026Last modified by NVD

Description

Advanced Poll 2.0.2 allows remote attackers to obtain sensitive information via an HTTP request to info.php, which invokes the phpinfo() function.

AV:N/AC:L/Au:N/C:P/I:N/A:N

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2003-1181 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.5CVE-2007-0845Advanced poll vulnerabilityadmin/index.php in Advanced Poll 2.0.0 through 2.0.5-dev allows remote attackers to bypass authentication and gain administrator privileges by obtain…EPSS 6.7%7.5CVE-2006-1616Advanced poll vulnerabilityMultiple SQL injection vulnerabilities in Advanced Poll 2.02 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to com…EPSS 1.2%7.5CVE-2003-1178Advanced poll vulnerabilityEval injection vulnerability in comments.php in Advanced Poll 2.0.2 allows remote attackers to execute arbitrary PHP code via the (1) id, (2) templat…EPSS 2.0%7.5CVE-2003-1179Advanced poll vulnerabilityMultiple PHP remote file inclusion vulnerabilities in Advanced Poll 2.0.2 allow remote attackers to execute arbitrary PHP code via the include_path p…EPSS 4.7%7.5CVE-2003-1180Advanced poll vulnerabilityDirectory traversal vulnerability in Advanced Poll 2.0.2 allows remote attackers to read arbitrary files or inject arbitrary local PHP files via .. s…EPSS 1.7%7.5CVE-2001-1423Advanced poll vulnerabilityAdvanced Poll before 1.61, when using a flat file database, allows remote attackers to gain privileges by setting the logged_in parameter.EPSS 1.9%5.1CVE-2006-2130Advanced poll vulnerabilitySQL injection vulnerability in include/class_poll.php in Advanced Poll 2.0.4 allows remote attackers to execute arbitrary SQL commands via the User-A…EPSS 1.1%5.0CVE-2006-2131Advanced poll vulnerabilityinclude/class_poll.php in Advanced Poll 2.0.4 uses the HTTP_X_FORWARDED_FOR (X-Forwarded-For HTTP header) to identify the IP address of a client, whi…EPSS 1.6%

Source: NIST National Vulnerability Database (record CVE-2003-1181), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.