Security Advisory
CVE-2007-0845
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
admin/index.php in Advanced Poll 2.0.0 through 2.0.5-dev allows remote attackers to bypass authentication and gain administrator privileges by obtaining a valid session identifier and setting the uid parameter to 1.