Voting System Vulnerability in MSA vot.Ar by MSA
CVE-2015-6839

4.6MEDIUM

Key Information:

Vendor

Grupo Msa

Status
Vendor
CVE Published:
23 October 2017

What is CVE-2015-6839?

The MSA vot.Ar 3.1 system contains a vulnerability in its parse function, which fails to validate whether an individual can cast more than one vote. This oversight enables attackers located physically near a voting location to exploit RFID ballot tags, potentially allowing them to register multiple votes for a single candidate. This vulnerability poses a significant risk to the integrity of the voting process, as it can be leveraged to manipulate election outcomes through unauthorized voting activities.

References

CVSS V3.1

Score:
4.6
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.