Eval injection vulnerability in comments.php in Advanced Poll 2.0.2 allows remote attackers to execute arbitrary PHP code via the (1) id, (2) template_set, or (3) action parameter.
https://exchange.xforce.ibmcloud.com/vulnerabilities/29396
https://exchange.xforce.ibmcloud.com/vulnerabilities/13513
http://www.securityfocus.com/bid/8890
http://www.securityfocus.com/archive/1/448007/100/0/threaded