PT-2025-26443 · Unknown · Automated Voting System
Yunlin
·
Published
2025-06-20
·
Updated
2025-06-26
·
CVE-2025-6352
CVSS v3.1
9.1
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions:
code-projects Automated Voting System version 1.0
Description:
A problematic vulnerability has been found in the Automated Voting System. It affects an unknown function of the file /vote.php in the Backend component. The manipulation leads to a direct request, and it is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Recommendations:
For version 1.0, consider disabling the unknown function in the /vote.php file of the Backend component until a patch is available. Restrict access to the /vote.php file to minimize the risk of exploitation. Avoid using the affected function in the Backend component until the issue is resolved.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Automated Voting System