Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fhgc-2x58-cm2p

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.6

Описание

The parse function in MSA vot.Ar 3.1 does not check whether a candidate receives more than one vote, which allows physically proximate attackers to cast multiple votes for a candidate via a crafted RFID ballot tag.

The parse function in MSA vot.Ar 3.1 does not check whether a candidate receives more than one vote, which allows physically proximate attackers to cast multiple votes for a candidate via a crafted RFID ballot tag.

EPSS

Процентиль: 23%
0.00073
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 4.6
nvd
больше 8 лет назад

The parse function in MSA vot.Ar 3.1 does not check whether a candidate receives more than one vote, which allows physically proximate attackers to cast multiple votes for a candidate via a crafted RFID ballot tag.

EPSS

Процентиль: 23%
0.00073
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-20