PT-2025-26443 · Unknown · Automated Voting System

Yunlin

·

Publicado

2025-06-20

·

Atualizado

2025-06-26

·

CVE-2025-6352

CVSS v3.1

9.1

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions: code-projects Automated Voting System version 1.0
Description: A problematic vulnerability has been found in the Automated Voting System. It affects an unknown function of the file /vote.php in the Backend component. The manipulation leads to a direct request, and it is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Recommendations: For version 1.0, consider disabling the unknown function in the /vote.php file of the Backend component until a patch is available. Restrict access to the /vote.php file to minimize the risk of exploitation. Avoid using the affected function in the Backend component until the issue is resolved.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-6352

Produtos afetados

Automated Voting System