Back
CVE-2001-1297
PHP remote file inclusion vulnerability in Actionpoll PHP script before 1.1.2 allows remote attackers to execute arbitrary PHP code via a URL in the includedir parameter.
Published: Oct 2, 2001
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| actionpoll | actionpoll | * |
GitHub Security Advisory GHSA-mvx6-p37c-4gp5
PHP remote file inclusion vulnerability in Actionpoll PHP script before 1.1.2 allows remote...
References (10)
- http://archives.neohapsis.com/archives/bugtraq/2001-10/0012.html
- http://sourceforge.net/project/shownotes.php?release_id=58331
- http://www.iss.net/security_center/static/7215.php Patch, Vendor Advisory
- http://www.osvdb.org/1960
- http://www.securityfocus.com/bid/3384 Exploit, Vendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2001-10/0012.html
- http://sourceforge.net/project/shownotes.php?release_id=58331
- http://www.iss.net/security_center/static/7215.php Patch, Vendor Advisory
- http://www.osvdb.org/1960
- http://www.securityfocus.com/bid/3384 Exploit, Vendor Advisory
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
1.90%
Top 22% most likely to be exploited
Threat Score
30.6 / 100
Data Sources
NVD
EPSS
GitHub