Online Voting System Project v1.0 - Multiple Unauthenticated SQL Injections (SQLi)
CVE-2023-48433
9.8CRITICAL
What is CVE-2023-48433?
The Online Voting System Project v1.0 is susceptible to multiple unauthenticated SQL Injection vulnerabilities due to insufficient validation of user input in the 'username' parameter of the login_action.php resource. Malicious actors can exploit this flaw to manipulate database queries, potentially leading to unauthorized data access or manipulation. It's crucial for users of this software to implement robust security measures to mitigate the risks associated with these vulnerabilities.
Affected Version(s)
Online Voting System Project 1.0