CVE-2006-2557
PHP remote file inclusion vulnerability in extras/poll/poll.php in Florian Amrhein NewsPortal before 0.37, and TR Newsportal (TRanx rebuilded), allows remote attackers to execute arbitrary PHP code via a URL in the file_newsportal parameter.
Date published : 2006-05-23
http://www.securityfocus.com/bid/18000
http://archives.neohapsis.com/archives/bugtraq/2006-05/0308.html