CVE-2006-2281
X-Scripts X-Poll (xpoll) 2.30 allows remote attackers to execute arbitrary PHP code by using admin/images/add.php to upload a PHP file, then access it.
Date published : 2006-05-09
http://www.securityfocus.com/bid/17901
http://www.securityfocus.com/archive/1/433220/100/0/threaded