VYPR
Unrated severityNVD Advisory· Published Aug 26, 2018· Updated Aug 5, 2024

CVE-2018-15833

CVE-2018-15833

Description

In Vanilla before 2.6.1, the polling functionality allows Insecure Direct Object Reference (IDOR) via the Poll ID, leading to the ability of a single user to select multiple Poll Options (e.g., vote for multiple items).

Affected products

2
  • Vanilla OS/Vanillainferred2 versions
    <2.6.1+ 1 more
    • (no CPE)range: <2.6.1
    • (no CPE)range: <2.6.1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.