Security Advisory

CVE-2024-45987

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-09-26 00:00:00
Last updated 2025-03-25 16:30:46
Assigner mitre
State PUBLISHED

Description

Projectworld Online Voting System Version 1.0 is vulnerable to Cross Site Request Forgery (CSRF) via voter.php. This vulnerability allows an attacker to craft a malicious link that, when clicked by an authenticated user, automatically submits a vote for a specified party without the users consent or knowledge. The attack leverages the users active session to perform the unauthorized action, compromising the integrity of the voting process.