PT-2025-26443 · Unknown · Automated Voting System
Yunlin
·
Publicado
2025-06-20
·
Atualizado
2025-06-26
·
CVE-2025-6352
CVSS v3.1
9.1
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions:
code-projects Automated Voting System version 1.0
Description:
A problematic vulnerability has been found in the Automated Voting System. It affects an unknown function of the file /vote.php in the Backend component. The manipulation leads to a direct request, and it is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Recommendations:
For version 1.0, consider disabling the unknown function in the /vote.php file of the Backend component until a patch is available. Restrict access to the /vote.php file to minimize the risk of exploitation. Avoid using the affected function in the Backend component until the issue is resolved.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Automated Voting System