CVE-2023-2052: Campcodes Advanced Online Voting System ballot_down.php sql injection
A vulnerability classified as critical was found in Campcodes Advanced Online Voting System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/ballotdown.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-225937 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-2052?
CVE-2023-2052 is classified as a critical vulnerability.
What type of vulnerability is CVE-2023-2052?
CVE-2023-2052 is an SQL injection vulnerability found in the Advanced Online Voting System.
How do I fix CVE-2023-2052?
To mitigate CVE-2023-2052, ensure that input validation and parameterized queries are implemented in the affected functionalities.
Which version of the software is affected by CVE-2023-2052?
CVE-2023-2052 affects version 1.0 of the Advanced Online Voting System.
What component is impacted by CVE-2023-2052?
CVE-2023-2052 impacts the /admin/ballot_down.php file in the Advanced Online Voting System.