PT-2024-12571 · Unknown · Liquidpoll

Abdi Pranata

·

Published

2024-12-13

·

Updated

2024-12-14

·

CVE-2023-36531

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions LiquidPoll – Advanced Polls for Creators and Brands versions 3.3.68 and earlier
Description The issue affects LiquidPoll due to missing authorization, allowing exploitation of incorrectly configured access control security levels.
Recommendations For versions 3.3.68 and earlier, update to a version that contains a fix for this issue, as no specific workaround is provided for these versions. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Missing Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-36531

Affected Products

Liquidpoll