CVE-2023-2053: Campcodes Advanced Online Voting System candidates_row.php sql injection
A vulnerability, which was classified as critical, has been found in Campcodes Advanced Online Voting System 1.0. Affected by this issue is some unknown functionality of the file /admin/candidatesrow.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-225938 is the identifier assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-2053?
CVE-2023-2053 has been classified as a critical vulnerability.
How does CVE-2023-2053 affect the Advanced Online Voting System?
CVE-2023-2053 affects the file /admin/candidates_row.php, allowing for SQL injection through manipulation of the argument id.
What are the potential impacts of exploiting CVE-2023-2053?
Exploitation of CVE-2023-2053 could lead to unauthorized access to database information and manipulation of voting data.
How can I fix CVE-2023-2053 in the Advanced Online Voting System?
To fix CVE-2023-2053, input validation and parameterized queries should be implemented in the affected PHP file.
Which version of the Advanced Online Voting System is affected by CVE-2023-2053?
Only version 1.0 of the Advanced Online Voting System is affected by CVE-2023-2053.