Vulnerabilities (CVE)

Filtered by vendor Projectworlds Subscribe
Filtered by product Online Voting System Project
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-48433 1 Projectworlds 1 Online Voting System Project 2024-02-05 N/A 9.8 CRITICAL
Online Voting System Project v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'username' parameter of the login_action.php resource does not validate the characters received and they are sent unfiltered to the database.
CVE-2023-48434 1 Projectworlds 1 Online Voting System Project 2024-02-05 N/A 9.8 CRITICAL
Online Voting System Project v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'username' parameter of the reg_action.php resource does not validate the characters received and they are sent unfiltered to the database.