Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-41670 | Projectworld Online Voting System Version 1.0 is vulnerable to Cross Site Request Forgery (CSRF) via voter.php. This vulnerability allows an attacker to craft a malicious link that, when clicked by an authenticated user, automatically submits a vote for a specified party without the user's consent or knowledge. The attack leverages the user's active session to perform the unauthorized action, compromising the integrity of the voting process. |
| Link | Providers |
|---|---|
| https://github.com/soursec/CVEs/tree/main/CVE-2024-45987 |
|
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Sat, 05 Oct 2024 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Online Voting System Project
Online Voting System Project online Voting System |
|
| Weaknesses | CWE-352 | |
| CPEs | cpe:2.3:a:online_voting_system_project:online_voting_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Online Voting System Project
Online Voting System Project online Voting System |
|
| Metrics |
cvssV3_1
|
Fri, 27 Sep 2024 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 26 Sep 2024 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Projectworld Online Voting System Version 1.0 is vulnerable to Cross Site Request Forgery (CSRF) via voter.php. This vulnerability allows an attacker to craft a malicious link that, when clicked by an authenticated user, automatically submits a vote for a specified party without the user's consent or knowledge. The attack leverages the user's active session to perform the unauthorized action, compromising the integrity of the voting process. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-25T16:30:46.718Z
Reserved: 2024-09-11T00:00:00.000Z
Link: CVE-2024-45987
Updated: 2024-09-26T19:05:09.373Z
Status : Modified
Published: 2024-09-26T18:15:08.583
Modified: 2025-03-25T17:16:10.220
Link: CVE-2024-45987
No data.
OpenCVE Enrichment
No data.
EUVD