Eval injection vulnerability in comments.php in Advanced Poll 2.0.2 allows remote attackers to execute arbitrary PHP code via the (1) id, (2) template_set, or (3) action parameter.Referenceshttp://www.osvdb.org/2743http://www.securityfocus.com/archive/1/342493https://exchange.xforce.ibmcloud.com/vulnerabilities/29396http://www.securityfocus.com/bid/8890http://www.securityfocus.com/archive/1/448007/100/0/threadedhttp://secunia.com/advisories/10068http://attrition.org/pipermail/vim/2006-October/001080.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/13513